CVE-2024-53290

Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Command execution
References
Configurations

Configuration 1 (hide)

cpe:2.3:o:dell:thinos:2408:*:*:*:*:*:*:*

History

04 Feb 2025, 16:14

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000248475/dsa-2024-463 - () https://www.dell.com/support/kbdoc/en-us/000248475/dsa-2024-463 - Vendor Advisory
CPE cpe:2.3:o:dell:thinos:2408:*:*:*:*:*:*:*
Summary
  • (es) La versión 2408 de Dell ThinOS contiene una vulnerabilidad de neutralización inadecuada de elementos especiales utilizados en un comando ('inyección de comandos'). Un atacante no autenticado con acceso local podría aprovechar esta vulnerabilidad, lo que provocaría la ejecución de un comando.
First Time Dell
Dell thinos

11 Dec 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-11 08:15

Updated : 2025-02-04 16:14


NVD link : CVE-2024-53290

Mitre link : CVE-2024-53290

CVE.ORG link : CVE-2024-53290


JSON object : View

Products Affected

dell

  • thinos
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')