CVE-2024-42427: Dell Wyse Thinos
High severity, CVSS 7.6. EPSS: 1.1% chance of exploitation in the next 30 days.
Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Elevation of privileges.
Affected products
- Dell Wyse Thinos: version 9.5.1079 only; version 9.5.2109 only
Published 2024-09-10. Last modified 2026-06-17.