CVE-2021-21587: Infoleak
Dell Wyse Management Suite versions 3.2 and earlier contain a full path disclosure vulnerability. A local unauthenticated attacker could exploit this vulnerability in order to obtain the path of files and folders.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-21587?
CVE-2021-21587 is a vulnerability in Dell Wyse Management Suite versions 3.2 and earlier that allows a local unauthenticated attacker to obtain the path of files and folders.
How severe is CVE-2021-21587?
CVE-2021-21587 has a severity level of medium (3.3).
Who is affected by CVE-2021-21587?
Dell Wyse Management Suite versions 3.2 and earlier are affected by CVE-2021-21587.
How can an attacker exploit CVE-2021-21587?
An attacker can exploit CVE-2021-21587 by executing a local unauthenticated attack to obtain the path of files and folders.
Is there a fix for CVE-2021-21587?
Yes, Dell has released a fix for CVE-2021-21587. Please refer to the Dell support website for more information.