Medium severity6.3NVD Advisory· Published Jun 23, 2023· Updated Jun 17, 2026
CVE-2023-28071
CVE-2023-28071
Description
Dell Command | Update, Dell Update, and Alienware Update versions 4.9.0, A01 and prior contain an Insecure Operation on Windows Junction / Mount Point vulnerability. A local malicious user could potentially exploit this vulnerability to create arbitrary folder leading to permanent Denial of Service (DOS).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:dell:alienware_update:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:dell:alienware_update:*:*:*:*:*:*:*:*range: <4.9.0
- cpe:2.3:a:dell:alienware_update:4.9.0:a01:*:*:*:*:*:*
cpe:2.3:a:dell:command_update:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:dell:command_update:*:*:*:*:*:*:*:*range: <4.9.0
- cpe:2.3:a:dell:command_update:4.9.0:a01:*:*:*:*:*:*
<=4.9.0, A01+ 1 more
- (no CPE)range: <=4.9.0, A01
- (no CPE)range: 4.9.0, A01 and Prior
- Range: <=4.9.0, A01
Patches
Vulnerability mechanics
References
1- www.dell.com/support/kbdoc/en-us/000213546/dsa-2023-170-dell-command-updatenvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.