CVE-2025-45376
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2025-09-29
Last updated on: 2025-10-29
Assigner: Dell
Description
Description
Dell Repository Manager (DRM), versions 3.4.7 and 3.4.8, contains an Improper Handling of Insufficient Permissions or Privileges vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| dell | repository_manager | From 3.4.7 (inc) to 3.4.9 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-280 | The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in Dell Repository Manager (DRM) versions 3.4.7 and 3.4.8 involves improper handling of insufficient permissions or privileges. A low privileged attacker with local access could exploit this flaw to elevate their privileges on the affected system.
How can this vulnerability impact me? :
If exploited, this vulnerability could allow an attacker with limited access to gain higher privileges, potentially leading to unauthorized access, control over system functions, and compromise of confidentiality, integrity, and availability of data.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70