ZeroHour

CVE-2024-53292

CVSS 3.1
6.7 medium
EPSS
<1%p3
Published
()
Modified
Description

Dell VxVerify, versions prior to x.40.405, contain a Plain-text Password Storage Vulnerability in the shell wrapper. A local high privileged attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable component with privileges of the compromised account.

Vendors
dell
Products
vxrail hyperconverged infrastructure
Weakness
CWE-256, CWE-522
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.