CVE-2021-21535

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
30/04/2021
Last modified:
06/05/2021

Description

Dell Hybrid Client versions prior to 1.5 contain a missing authentication for a critical function vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to gain root level access to the system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:hybrid_client:*:*:*:*:*:*:*:* 1.5 (excluding)