Description

Dell Update Manager Plugin, versions 1.4.0 through 1.5.0, contains a Plain-text Password Storage Vulnerability in Log file. A remote high privileged attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

INFO

Published Date :

2024-05-08T15:37:31.837Z

Last Modified :

2024-08-02T01:03:51.393Z

Source :

dell
AFFECTED PRODUCTS

The following products are affected by CVE-2024-28971 vulnerability.

Vendors Products
Dell
  • Openmanage Enterprise Update Manager
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-28971.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact