Home
MEDIUM: 5.7 CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:LDefault status
unaffected
Any version before 2505
affected
Description
Dell ThinOS 2502 and prior contain a Cleartext Storage of Sensitive Information vulnerability. A high privileged attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure.
Problem types
CWE-312: Cleartext Storage of Sensitive Information
Product status
Any version before 2505
Credits
Dell Technologies would like to thank Darren McDonald at AmberWolf for reporting this issue.
References
www.dell.com/support/kbdoc/en-us/000325632/dsa-2025-225