← back
CVE-2024-28961

CVE-2024-28961

CVSS 6.3 MEDIUMEPSS 0.1%CWE-256
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.3EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
29 Apr 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Dell OpenManage Enterprise, versions 4.0.0 and 4.0.1, contains a sensitive information disclosure vulnerability. A local low privileged malicious user could potentially exploit this vulnerability to obtain credentials leading to unauthorized access with elevated privileges. This could lead to further attacks, thus Dell recommends customers to upgrade at the earliest opportunity.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →