First published: Sun Apr 10 2011(Updated: )
The Dell KACE K2000 Systems Deployment Appliance 3.3.36822 and earlier contains a peinst CIFS share, which allows remote attackers to obtain sensitive information by reading the (1) unattend.xml or (2) sysprep.inf file, as demonstrated by reading a password.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dell KACE K2000 Systems Deployment Appliance | <=3.3.36822 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.