当前位置:首页 >休閑 >【】

【】

2026-03-21 20:03:41 [休閑] 来源:有聲有色網

If you own a Dell laptop or desktop then there's a very good chance your machine is vulnerable to attack simply by visiting a malicious website. The good news is, Dell has released a patch to close the security hole.

As ZDNet reports, 17-year-old security researcher Bill Demirkapi discovered a vulnerability (CVE-2019-3719) in the Dell SupportAssist utility which allows an attacker to remote execute code. This is achieved by getting a user to visit a specific website containing JavaScript code capable of tricking the SupportAssist app into downloading and running malicious files (with full admin rights). Importantly, no user interaction is required once the website has been visited and the JavaScript can be hidden inside an ad on a legitimate website.

Here's the remote code execution in action as recorded by Demirkapi:

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

Dell uses SupportAssist to pro-actively check the health of your hardware and software and then automatically updates each system as necessary. As you've probably guessed, it's a piece of software that gets pre-installed on most new Dell systems, meaning there's a lot of users out there potentially vulnerable to this attack.

Mashable Games

Dell has known about the vulnerability since Oct. 26 last year and a patched version of SupportAssist (v3.2.0.90) is now available which closes the security hole. If you own a Dell which has SupportAssist installed, download and install the new version as soon as possible to protect your system.


Featured Video For You
Scientists successfully 3D-print heart from human cells

TopicsCybersecurityDell

(责任编辑:焦點)

    推荐文章
    • The U.S. will no longer have the final say on internet domain names

      The U.S. will no longer have the final say on internet domain namesThe National Telecommunications Information Admistration (NTIA) announced via。 blog post。on Tuesday ...[详细]
    • 參芪扶正適用哪些病症

      參芪扶正適用哪些病症參芪扶正丸是臨床上常見的中成藥 ,中成藥的副作用雖然沒有西藥中的副作用大,但是在使用的時候還是要謹慎  ,尤其是要考慮到自身的病情嚴重程度來用藥。而且在臨床上不管是中成藥還是中藥,使用上都需要結合疾病的症狀 ...[详细]
    • 注射頭孢曲鬆鈉的危害

      注射頭孢曲鬆鈉的危害頭孢曲鬆鈉對於普通人而言其實是比較陌生的 ,但是很多醫生在開處方藥的時候會用上,因為個體的差異不同 ,很多人在使用頭孢曲鬆鈉的時候往往會忽略掉藥物對人體的影響 ,個別患者可能會出現一係列的副作用 ,所以需要謹 ...[详细]
    • 母乳第二次加熱的危害

      母乳第二次加熱的危害對寶寶堅持母乳喂養,可以讓寶寶的身體免疫力更高 ,對於媽媽和寶寶來說都是不錯的選擇。隻不過堅持母乳喂養十分複雜,因為還是有許多媽媽在哺乳期間要出去工作 ,這時候隻能將母乳存放在家中,經過二次加熱喂給寶寶喝 ...[详细]
    • Man stumbles upon his phone background in real life

      Man stumbles upon his phone background in real lifeLife imitates tech. Or, perhaps it's the other way around.Reddit user xbshooterwas traveling near Sa ...[详细]
    • 月經期間可以吃洋蔥嗎

      月經期間可以吃洋蔥嗎女性在來月經的時候不能亂吃東西,有些食物稍有不慎就可能會造成宮寒,以至於痛經  ,女性的子宮和卵巢可以說是最脆弱的器官,痛經嚴重者甚至會造成生命危險 ,所以經期的飲食一定要慎重,洋蔥味道辛辣,大多用來當做配 ...[详细]
    • 重組牛堿生長因子危害

      重組牛堿生長因子危害重組牛堿生長因子是一種在整形領域經常被使用到的藥物 ,因為他對細胞重生大有療效 ,所以許多女性在整形的時候會選擇重組牛堿生長因子 ,讓皮膚恢複到正常狀態 。但是重組牛堿生長因子畢竟是一種藥物,如果長期使用的話 ...[详细]
    • 酸奶和什麽水果搭配好 ?

      酸奶和什麽水果搭配好
?喜歡喝酸奶的人是非常多的,尤其是女性以及孩子,喝酸奶不僅可以促進腸胃的蠕動,幫助消化 ,對於孩子來說還能幫助孩子補充營養物質 ,讓孩子的個子長得更高,其實在喝酸奶的時候如果在搭配不同的水果 ,功效以及作用可 ...[详细]
    • Aly Raisman catches Simone Biles napping on a plane like a champion

      Aly Raisman catches Simone Biles napping on a plane like a championSimone Biles is exhausted. She won five medals at the Summer Olympics in Rio, posed for selfies with ...[详细]
    • 柿餅和橘子能一起吃嗎

      柿餅和橘子能一起吃嗎橘子在很多地區都有種植,這也就導致了橘子是一種在日常生活中經常出現的水果。橘子的類型也是多種多樣 ,每一種橘子所發揮出來的口感也會有所差異 ,每個人可以根據個人的口味偏好選擇不同的橘子。但是柿餅是一種較為 ...[详细]
    热点阅读