Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on Windows Junction in the installer component. A local malicious user may potentially exploit this vulnerability leading to arbitrary file delete.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/ycdxsb/ycdxsb