PT-2021-14640 · Dell · Dell Wyse Thinos

Published

2021-08-10

·

Updated

2021-08-23

·

CVE-2021-21597

CVSS v3.1

7.2

High

VectorAV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell Wyse ThinOS version 9.0
Description The issue allows an authenticated malicious user with physical access to the system to read sensitive information written to the log files.
Recommendations For Dell Wyse ThinOS version 9.0, consider restricting physical access to the system and limiting user privileges to minimize the risk of exploitation until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insertion into Log File

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-21597

Affected Products

Dell Wyse Thinos