Dell Key Trust Platform, v3.0.6 and prior, contains Use of a Cryptographic Primitive with a Risky Implementation vulnerability. A local privileged attacker could potentially exploit this vulnerability, leading to privileged information disclosure.
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:LDell Cloudlink
APPDell< 7.1.9
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
LPE
Related vulnerabilities
CVE-2025-45378CRITICAL9.1PL ✓same product
Dell CloudLink: command injection przez ucieczkę z restricted shell
CVE-2025-46364CRITICAL9.1PL ✓same product
Dell CloudLink — CLI Escape umożliwia przejęcie kontroli nad systemem
CVE-2022-34379CRITICAL9.4PL ✓same product
Authentication Bypass w Dell EMC CloudLink — logowanie bez hasła
CVE-2022-34380CRITICAL9.3PL ✓same product
Authentication Bypass w Dell CloudLink — obejście uwierzytelnienia konsoli systemowej
CVE-2021-36312CRITICAL9.1PL ✓same product
Dell EMC CloudLink — zakodowane hasło umożliwiające nieautoryzowany dostęp