If successful, the redirect would allow bad actors to force modified update packages onto the affected models.

Eclypsium first notified Dell of the issues back in March.

Eclypsium

Two of the vulnerabilities have been fixed on the server-side, while others are addressed in software updates.

A Dell laptop sitting on a table

XPS / Unsplash

A breakdown of how the vulnerability works

Eclypsium