Information Exposure in Dell Hybrid Client
CVE-2021-21534

4MEDIUM

Key Information:

Vendor
Dell
Vendor
CVE Published:
30 April 2021

Summary

Dell Hybrid Client versions prior to 1.5 are affected by an information exposure vulnerability that allows local unauthenticated attackers to access sensitive information via the local API. This flaw underscores the importance of securing API endpoints to prevent unauthorized data access.

Affected Version(s)

Dell Hybrid Client (DHC) < 1.5

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.