CVE-2024-28964
12.06.2024, 15:15
Dell Common Event Enabler, version 8.9.10.0 and prior, contain an insecure deserialization vulnerability in CAVATools. A local unauthenticated attacker could potentially exploit this vulnerability, leading to arbitrary code execution in the context of the logged in user. Exploitation of this issue requires a victim to open a malicious file.Enginsight
Vendor | Product | Version |
---|---|---|
dell | common_event_enabler | 𝑥 ≤ 8.9.10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References