← Volver a CVEs
CVE-2020-29491
CRITICAL10.0
Descripcion
Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the sensitive information on the local network, leading to the potential compromise of impacted thin clients.
Detalles CVE
Puntuacion CVSS v3.110.0
SeveridadCRITICAL
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado1/4/2021
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
dell:wyse_3040dell:wyse_5010dell:wyse_5040dell:wyse_5060dell:wyse_5070dell:wyse_5470dell:wyse_7010dell:wyse_thinos
Debilidades (CWE)
CWE-276CWE-276
Referencias
https://www.dell.com/support/kbdoc/en-us/000180768/dsa-2020-281(security_alert@emc.com)
https://www.dell.com/support/kbdoc/en-us/000180768/dsa-2020-281(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.