CVE-2019-3744: Dell Digital Delivery
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a Universal Windows Platform application by manipulating the install software package feature with a race condition and a path traversal exploit in order to run a malicious executable with elevated privileges.
Affected products
- Dell Digital Delivery: before 3.5.2013 (fixed in 3.5.2013); from 4.0.15.0, before 4.0.41 (fixed in 4.0.41)
Published 2019-08-09. Last modified 2026-06-17.