Description

Dell Update Package (DUP) Framework, versions 23.12.00 through 24.12.00, contains an Improper Handling of Insufficient Permissions or Privileges vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

INFO

Published Date :

2026-02-12T02:05:31.927Z

Last Modified :

2026-02-26T14:44:21.920Z

Source :

dell
AFFECTED PRODUCTS

The following products are affected by CVE-2026-23857 vulnerability.

Vendors Products
Dell
  • Update Package
  • Update Package Framework
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-23857.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact