CVE-2021-21597: High severity dell wyse thinos vulnerability
Published Aug 10, 2021
·Updated
Dell Wyse ThinOS, version 9.0, contains a Sensitive Information Disclosure Vulnerability. An authenticated malicious user with physical access to the system could exploit this vulnerability to read sensitive information written to the log files.
Affected Software
6 affected components
Dell Wyse ThinOS=9.0
Dell Wyse ThinOS=9.1
Dell Wyse ThinOS=9.1-mr1
Dell Wyse 3040 Thin Client
Dell Wyse 5070 Thin Client
Dell Wyse 5470 Thin Client
Remediation
Patch Available
Event History
Aug 10, 2021
CVE Published
via MITRE·07:05 PM
Data Sourced
via MITRE·07:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Dell Wyse ThinOS vulnerability?
The vulnerability ID for this Dell Wyse ThinOS vulnerability is CVE-2021-21597.
2
What is the severity of CVE-2021-21597?
The severity of CVE-2021-21597 is high (3.9).
3
What is the affected software for CVE-2021-21597?
The affected software for CVE-2021-21597 is Dell Wyse ThinOS versions 9.0, 9.1, and 9.1-mr1.
4
How can this vulnerability be exploited?
An authenticated malicious user with physical access to the system could exploit this vulnerability to read sensitive information written to the log files.
5
How can I fix CVE-2021-21597?
To fix CVE-2021-21597, apply the necessary updates provided by Dell.