CVE-2025-43729
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: security_alert@emc.com (Secondary)
Description
Dell ThinOS 10, versions prior to 2508_10.0127, contains an Incorrect Permission Assignment for Critical Resource vulnerability. A local low-privileged attacker could potentially exploit this vulnerability leading to Elevation of Privileges and Unauthorized Access.
Affected (1)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2508 |
| Running on/with | Platform Versions |
|---|---|
Dell Latitude 3330 | All versions |
Dell Latitude 3420 | All versions |
Dell Latitude 3440 | All versions |
Dell Latitude 3450 | All versions |
Dell Latitude 5440 | All versions |
Dell Latitude 5450 | All versions |
Dell Latitude 5520 | All versions |
Dell Latitude 5530 | All versions |
Dell Latitude 5540 | All versions |
Dell Latitude 5550 | All versions |
Dell Optiplex 3000 Tc | All versions |
Dell Optiplex 5400 All In One | All versions |
Dell Optiplex 7020 | All versions |
Dell Optiplex All In One 7410 | All versions |
Dell Optiplex All In One 7420 | All versions |
Dell Optiplex Micro Plus 7010 | All versions |
Dell Precision 3260 Compact | All versions |
Dell Precision 3280 | All versions |
Dell Pro 14 Pc14250 | All versions |
Dell Pro 16 Pc16250 | All versions |
Dell Pro 16 Plus Pb16250 | All versions |
Dell Pro 24 All In One | All versions |
Dell Pro Max 14 | All versions |
Dell Pro Max 16 Plus | All versions |
Dell Pro Rugged 13 Ra13250 | All versions |
Dell Pro Rugged 14 Rb14250 | All versions |
Dell Pro Slim Low Sff | All versions |
Dell Pro Tower Qct1250 | All versions |
Dell Wyse 5070 Extended Thin Client | All versions |
Dell Wyse 5070 Thin Client | All versions |
Dell Wyse 5470 All In One Thin Client | All versions |
Dell Wyse 5470 Mtc | All versions |
References (1)
Source: security_alert@emc.com
Vendor Advisory
Timeline
No history available yet.