Vulnerability Description
Dell ImageAssist versions prior to 8.7.15 contain an information disclosure vulnerability. Dell ImageAssist stores some sensitive encrypted information in the images it creates. A privileged user of a system running an operating system that was deployed with Dell ImageAssist could potentially retrieve this sensitive information to then compromise the system and related systems.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Imageassist | < 8.7.15 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/article/us/en/19/sln318831/dsa-2019-139Vendor Advisory
- https://www.dell.com/support/article/us/en/19/sln318831/dsa-2019-139Vendor Advisory
FAQ
What is CVE-2019-3767?
CVE-2019-3767 is a vulnerability with a CVSS score of 8.2 (HIGH). Dell ImageAssist versions prior to 8.7.15 contain an information disclosure vulnerability. Dell ImageAssist stores some sensitive encrypted information in the images it creates. A privileged user of a...
How severe is CVE-2019-3767?
CVE-2019-3767 has been rated HIGH with a CVSS base score of 8.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-3767?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Imageassist.