CVE-2022-29090
moderate-risk
Published 2022-08-10
Dell Wyse Management Suite 3.6.1 and below contains a Sensitive Data Exposure vulnerability. A low privileged malicious user could potentially exploit this vulnerability in order to obtain credentials. The attacker may be able to use the exposed credentials to access the target device and perform unauthorized actions.
Do I need to act?
-
0.19% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
8
CVSS 8.5/10
High
NETWORK
/ LOW complexity
Affected Products (1)
Affected Vendors
References (2)
35
/ 100
moderate-risk
Severity
29/34 · Critical
Exploitability
1/34 · Minimal
Exposure
5/34 · Minimal