CVE-2020-29492: Critical severity Dell Wyse ThinOS vulnerability
Published Jan 4, 2021
·Updated
Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to access the writable file and manipulate the configuration of any target specific station.
Affected Software
8 affected components
Dell Wyse ThinOS<=8.6
Dell Wyse 3040
Dell Wyse 5010
Dell Wyse 5040
Dell Wyse 5060
Dell Wyse 5070
Dell Wyse 5470
Dell Wyse 7010
Event History
Jan 4, 2021
CVE Published
via MITRE·09:15 PM
Data Sourced
via MITRE·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-29492.
2
What is the severity of CVE-2020-29492?
The severity of CVE-2020-29492 is critical with a severity value of 10.
3
Which versions of Dell Wyse ThinOS are affected by CVE-2020-29492?
Dell Wyse ThinOS 8.6 and prior versions are affected by CVE-2020-29492.
4
How can a remote attacker exploit CVE-2020-29492?
A remote unauthenticated attacker could potentially exploit CVE-2020-29492 to access the writable file and manipulate the configuration of any target specific station.
5
Is Dell Wyse 3040 vulnerable to CVE-2020-29492?
No, Dell Wyse 3040 is not vulnerable to CVE-2020-29492.