High severity7.6NVD Advisory· Published Sep 10, 2024· Updated Jun 17, 2026
CVE-2024-42427
CVE-2024-42427
Description
Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Elevation of privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Dell/Wyse Proprietary OS (Modern ThinOS)v5Range: Dell ThinOS 2402
cpe:2.3:o:dell:wyse_thinos:9.5.1079:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:dell:wyse_thinos:9.5.1079:*:*:*:*:*:*:*
- cpe:2.3:o:dell:wyse_thinos:9.5.2109:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.dell.com/support/kbdoc/en-us/000228350/dsa-2024-386nvdVendor Advisory
News mentions
0No linked articles in our index yet.