Sensitive Data Exposure Vulnerability in Dell Wyse Management Suite
CVE-2022-29090
8.5HIGH
Summary
Dell Wyse Management Suite versions 3.6.1 and earlier are subject to a vulnerability that exposes sensitive data. A low privileged attacker could exploit this weakness to gain access to credentials stored within the system. Once these credentials are obtained, the attacker may perform unauthorized actions on the target device, posing significant security risks to organizations utilizing the affected services. It is essential for users to review their systems and apply necessary updates to mitigate this vulnerability.
Affected Version(s)
Wyse Management Suite < 3.7
References
CVSS V3.1
Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved