VYPR
Medium severity5.5NVD Advisory· Published Feb 10, 2023· Updated Jun 17, 2026

CVE-2023-23698

CVE-2023-23698

Description

Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on Windows Junction in the installer component. A local malicious user may potentially exploit this vulnerability leading to arbitrary file delete.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • Dell/Updatellm-fuzzy
    Range: <4.6.0 and <4.7.1
  • cpe:2.3:a:dell:alienware_update:4.6.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:dell:alienware_update:4.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:dell:alienware_update:4.7.1:*:*:*:*:*:*:*
  • cpe:2.3:a:dell:command_update:4.6.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:dell:command_update:4.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:dell:command_update:4.7.1:*:*:*:*:*:*:*
  • Dell/Dell Command | Updatellm-fuzzy2 versions
    <4.6.0 and <4.7.1+ 1 more
    • (no CPE)range: <4.6.0 and <4.7.1
    • (no CPE)range: Versions 4.6.0 and 4.7.1
  • Range: <4.6.0 and <4.7.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.