First published: Mon Aug 09 2021(Updated: )
Dell Command | Update, Dell Update, and Alienware Update versions before 4.3 contains an Improper Verification of Cryptographic Signature Vulnerability. A local authenticated malicious user may exploit this vulnerability by executing arbitrary code on the system.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Alienware Command Center | <5.4.35.0 | |
Dell Command | Update | <4.3.0 | |
Dell Update / Alienware Update | <4.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36277 is rated as a high-severity vulnerability due to its potential for arbitrary code execution by a local authenticated attacker.
To fix CVE-2021-36277, update affected software to the latest versions above 4.3 for Dell Command | Update, Dell Update, and Alienware Update.
CVE-2021-36277 affects users of Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.3.
An attacker can exploit CVE-2021-36277 to execute arbitrary code on the affected system with local access.
No, CVE-2021-36277 is a local vulnerability that requires authenticated access to the system for exploitation.