CVE-2022-34392

Publication date

2023-02-10 20:26:21

Family

dell

State

PUBLISHED

Description

SupportAssist for Home PCs (versions 3.11.4 and prior) contain an insufficient session expiration Vulnerability. An authenticated non-admin user can be able to obtain the refresh token and that leads to reuse the access token and fetch sensitive information.