CVE-2024-52543

Dell NativeEdge, version(s) 2.1.0.0, contain(s) a Creation of Temporary File With Insecure Permissions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:nativeedge_orchestrator:*:*:*:*:*:*:*:*

History

29 Jan 2025, 20:26

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000258904/dsa-2024-488-security-update-for-dell-nativeedge-multiple-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000258904/dsa-2024-488-security-update-for-dell-nativeedge-multiple-vulnerabilities - Vendor Advisory
Summary
  • (es) Dell NativeEdge, versión(es) 2.1.0.0, contiene una vulnerabilidad de creación de archivos temporales con permisos inseguros. Un atacante con privilegios elevados y acceso local podría explotar esta vulnerabilidad y provocar la divulgación de información.
First Time Dell
Dell nativeedge Orchestrator
CPE cpe:2.3:a:dell:nativeedge_orchestrator:*:*:*:*:*:*:*:*
CWE CWE-668

25 Dec 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-25 16:15

Updated : 2025-01-29 20:26


NVD link : CVE-2024-52543

Mitre link : CVE-2024-52543

CVE.ORG link : CVE-2024-52543


JSON object : View

Products Affected

dell

  • nativeedge_orchestrator
CWE
CWE-378

Creation of Temporary File With Insecure Permissions

CWE-668

Exposure of Resource to Wrong Sphere