Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-29491

Опубликовано: 04 янв. 2021
Источник: nvd
CVSS3: 10
CVSS3: 8.6
CVSS2: 5
EPSS Низкий

Описание

Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the sensitive information on the local network, leading to the potential compromise of impacted thin clients.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:dell:wyse_thinos:*:*:*:*:*:*:*:*
Версия до 8.6 (включая)

Одно из

cpe:2.3:h:dell:wyse_3040:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5010:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5040:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5060:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5070:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5470:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_7010:-:*:*:*:*:*:*:*

EPSS

Процентиль: 75%
0.00905
Низкий

10 Critical

CVSS3

8.6 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-276
CWE-276

Связанные уязвимости

github
больше 3 лет назад

Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the sensitive information on the local network, leading to the potential compromise of impacted thin clients.

EPSS

Процентиль: 75%
0.00905
Низкий

10 Critical

CVSS3

8.6 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-276
CWE-276