VYPR
High severity7.6NVD Advisory· Published Sep 10, 2024· Updated Jun 17, 2026

CVE-2024-42427

CVE-2024-42427

Description

Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Elevation of privileges.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Dell/ThinOSllm-fuzzy
    Range: 2402, 2405
  • Dell/Wyse Proprietary OS (Modern ThinOS)v5
    Range: Dell ThinOS 2402
  • Dell/Wyse Thinos2 versions
    cpe:2.3:o:dell:wyse_thinos:9.5.1079:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:dell:wyse_thinos:9.5.1079:*:*:*:*:*:*:*
    • cpe:2.3:o:dell:wyse_thinos:9.5.2109:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.