First published: Fri Feb 10 2023(Updated: )
Dell SupportAssist for Home PCs (version 3.11.2 and prior) contain Overly Permissive Cross-domain Whitelist vulnerability. An authenticated non-admin user could potentially exploit the issue and obtain sensitive information.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell SupportAssist for Home PCs | <=3.11.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-34366 is a vulnerability in Dell SupportAssist for Home PCs (version 3.11.2 and prior) that allows an authenticated non-admin user to obtain sensitive information.
CVE-2022-34366 has a severity score of 6.5, which is considered medium.
An authenticated non-admin user can exploit CVE-2022-34366 to obtain sensitive information.
Dell SupportAssist for Home PCs version 3.11.2 and prior are affected by CVE-2022-34366.
To fix CVE-2022-34366, Dell recommends updating to the latest version of SupportAssist for Home PCs.