Vulnerabilities > CVE-2023-28072 - Deserialization of Untrusted Data vulnerability in Dell Alienware Command Center 5.4.35.0/5.5.37.0/5.5.40.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
dell
CWE-502

Summary

Dell Alienware Command Center, versions prior to 5.5.51.0, contain a deserialization of untrusted data vulnerability. A local malicious user could potentially send specially crafted requests to the .NET Remoting server to run arbitrary code on the system.

Common Weakness Enumeration (CWE)