peter bassill · operator
$ cve CVE-2004-2359 JSON

CVE-2004-2359 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 5.6% (pctl 93)

Patch early

A public exploit exists.

Description

Dell TrueMobile 1300 WLAN Mini-PCI Card Util TrayApplet 3.10.39.0 does not properly drop SYSTEM privileges when started from the systray applet, which allows local users to gain privileges by accessing the Help functionality.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS5.59% — more likely to be exploited than 93% of all CVEs
On CISA KEVno
Public exploityes
Published2004-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
delltruemobile 1300 wlan mini-pci card util trayapplet

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD