CVE-2022-34459: Dell Alienware Update

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a improper verification of cryptographic signature in get applicable driver component. A local malicious user could potentially exploit this vulnerability leading to malicious payload execution.

Affected products

  • Dell Alienware Update: before 4.7.1 (fixed in 4.7.1)
  • Dell Command Update: before 4.7.1 (fixed in 4.7.1)
  • Dell Update: before 4.7.1 (fixed in 4.7.1)

Published 2023-02-01. Last modified 2026-06-17.