PT-2024-22644 · Dell · Dell Openmanage Enterprise
Published
2024-04-29
·
Updated
2025-02-03
·
CVE-2024-28961
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Dell OpenManage Enterprise versions 4.0.0 through 4.0.1
Description
A sensitive information disclosure issue exists, allowing a local low privileged malicious user to potentially exploit this and obtain credentials. This could lead to unauthorized access with elevated privileges and further attacks.
Recommendations
For versions 4.0.0 and 4.0.1, upgrade to a newer version at the earliest opportunity to resolve the issue.
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dell Openmanage Enterprise