Information Exposure in Dell Hybrid Client
CVE-2021-21534
4MEDIUM
Summary
Dell Hybrid Client versions prior to 1.5 are affected by an information exposure vulnerability that allows local unauthenticated attackers to access sensitive information via the local API. This flaw underscores the importance of securing API endpoints to prevent unauthorized data access.
Affected Version(s)
Dell Hybrid Client (DHC) < 1.5
References
CVSS V3.1
Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved