CVE-2019-3744: Dell Digital Delivery

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a Universal Windows Platform application by manipulating the install software package feature with a race condition and a path traversal exploit in order to run a malicious executable with elevated privileges.

Affected products

  • Dell Digital Delivery: before 3.5.2013 (fixed in 3.5.2013); from 4.0.15.0, before 4.0.41 (fixed in 4.0.41)

Published 2019-08-09. Last modified 2026-06-17.