CVE-2024-49597

CWE-3073 documents3 sources
Severity
7.2HIGH
EPSS
0.0%
top 97.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 26

Description

Dell Wyse Management Suite, versions WMS 4.4 and prior, contain an Improper Restriction of Excessive Authentication Attempts vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:LExploitability: 2.3 | Impact: 4.7

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
CVE-2024-49597: Dell Wyse Management Suite, versions WMS 42024-11-26
GHSA
GHSA-6mg4-m676-rm67: Dell Wyse Management Suite, versions WMS 42024-11-26
CVE-2024-49597 (HIGH CVSS 7.2) | Dell Wyse Management Suite | cvebase.io