PT-2024-22644 · Dell · Dell Openmanage Enterprise

Published

2024-04-29

·

Updated

2025-02-03

·

CVE-2024-28961

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell OpenManage Enterprise versions 4.0.0 through 4.0.1
Description A sensitive information disclosure issue exists, allowing a local low privileged malicious user to potentially exploit this and obtain credentials. This could lead to unauthorized access with elevated privileges and further attacks.
Recommendations For versions 4.0.0 and 4.0.1, upgrade to a newer version at the earliest opportunity to resolve the issue.

Fix

Insufficiently Protected Credentials

Weakness Enumeration

Related Identifiers

CVE-2024-28961

Affected Products

Dell Openmanage Enterprise