Skip to main content

Vendor/product archive

dell / thinos CVEs

Beta · best-effort

15 CVEs tagged to dell / thinos1 Critical, 10 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2026-40715

Published Jun 2, 2026

Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit th…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-40713

Published Jun 2, 2026

Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access control vulnerability. An unauthenticated attacker with physical access could potentially explo…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-23862

Published Mar 16, 2026

Dell ThinOS 10 versions prior to ThinOS 2602_10.0573, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privilege…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-32752

Published May 29, 2025

Dell ThinOS 2502 and prior contain a Cleartext Storage of Sensitive Information vulnerability. A high privileged attacker with physical access could potentially exploit this vulne…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-27688

Published Mar 18, 2025

Dell ThinOS 2408 and prior, contains an improper permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to El…

CVSS 7.8 · High

CVE-2025-26331

Published Mar 7, 2025

Dell ThinOS 2411 and prior, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local acc…

CVSS 7.8 · High

CVE-2024-53290

Published Dec 11, 2024

Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with local acce…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2024-53289

Published Dec 11, 2024

Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vul…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-42423

Published Sep 10, 2024

Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin. A local unauthenticated use…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-28963

Published Apr 24, 2024

Telemetry Dashboard v1.0.0.7 for Dell ThinOS 2402 contains a sensitive information disclosure vulnerability. An unauthenticated user with local access to the device could exploit…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1