Wyse Management Suite versions prior to 4.0 contain a sensitive information disclosure vulnerability. An authenticated malicious user having local access to the system running the application could exploit this vulnerability to read sensitive information written to log files.
References
Link | Resource |
---|---|
https://www.dell.com/support/kbdoc/en-us/000215351/dsa-2023-240-dell-wyse-management-suite | Vendor Advisory |
Configurations
History
26 Jul 2023, 21:16
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.dell.com/support/kbdoc/en-us/000215351/dsa-2023-240-dell-wyse-management-suiteĀ - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.4 |
CPE | cpe:2.3:a:dell:wyse_management_suite:*:*:*:*:*:*:*:* |
20 Jul 2023, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-20 12:15
Updated : 2024-02-05 00:01
NVD link : CVE-2023-32483
Mitre link : CVE-2023-32483
CVE.ORG link : CVE-2023-32483
JSON object : View
Products Affected
dell
- wyse_management_suite
CWE
CWE-312
Cleartext Storage of Sensitive Information