CVE-2020-29491

CRITICAL

Dell Wyse ThinOS <8.6 - Info Disclosure

Title source: llm
STIX 2.1

Description

Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the sensitive information on the local network, leading to the potential compromise of impacted thin clients.

References (1)

Core 1
Core References

Scores

CVSS v3 10.0
EPSS 0.0091
EPSS Percentile 76.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-276
Status published
Products (1)
dell/wyse_thinos < 8.6
Published Jan 04, 2021
Tracked Since Feb 18, 2026