CVE Published: 21/05/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2021 Source: dell |
Vendor: Dell |
Product: Wyse Windows Embedded (WES) Status : PUBLISHED
CVE-2021-21552 Description
Dell Wyse Windows Embedded System versions WIE10 LTSC 2019 and earlier contain an improper authorization vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to bypass the restricted environment and perform unauthorized actions on the affected system.
Metrics
CVSS Version: 3.1 |
Base Score: 5.2 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N