CVE-2023-39246: Dell Encryption
High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.
Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server version prior to 11.8.1 contain an Insecure Operation on Windows Junction Vulnerability during installation. A local malicious user could potentially exploit this vulnerability to create an arbitrary folder inside a restricted directory, leading to Privilege Escalation
Affected products
- Dell Encryption: before 11.8.1 (fixed in 11.8.1)
- Dell Endpoint Security Suite Enterprise: before 11.8.1 (fixed in 11.8.1)
- Dell Security Management Server: before 11.8.1 (fixed in 11.8.1)
Published 2023-11-16. Last modified 2026-06-17.