Dell Wyse ThinOS, version 9.0, contains a Sensitive Information Disclosure Vulnerability. An authenticated malicious user with physical access to the system could exploit this vulnerability to read sensitive information written to the log files.
CVSS Vector
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:HDell Wyse 3040 Thin Client
HWDellall versionsDell Wyse 5070 Thin Client
HWDellall versionsDell Wyse 5470 Thin Client
HWDellall versionsDell Wyse Thinos
OSDell9.09.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
Related vulnerabilities
CVE-2025-43728CRITICAL9.6PL ✓same product
Obejście mechanizmu ochrony w Dell ThinOS 10 (Auth Bypass)
CVE-2020-29491CRITICAL10.0PL ✓same product
Dell Wyse ThinOS — niebezpieczna domyślna konfiguracja umożliwia nieautoryzowany dostęp
CVE-2020-29492CRITICAL10.0PL ✓same product
Dell Wyse ThinOS — niezabezpieczona domyślna konfiguracja umożliwia nieautoryzowany dostęp
CVE-2025-43729HIGH7.8same product
Dell ThinOS 10, versions prior to 2508_10.0127, contains an Incorrect Permission Assignment for Critical Resou...
CVE-2025-43730HIGH8.4same product
Dell ThinOS 10, versions prior to 2508_10.0127, contains an Improper Neutralization of Argument Delimiters in ...