CVE-2020-29491

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/01/2021
Last modified:
08/01/2021

Description

Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the sensitive information on the local network, leading to the potential compromise of impacted thin clients.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:wyse_thinos:*:*:*:*:*:*:*:* 8.6 (including)
cpe:2.3:h:dell:wyse_3040:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5010:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5040:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5060:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5070:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_5470:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:wyse_7010:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools