VendorsDellwyse_device_manager4.7.2
Vulnerabilities

Dell Wyse Device Manager 4.7.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2009-0695
hagent.exe in Wyse Device Manager (WDM) 4.7.x does not require authentication for commands, which allows remote attackers to obtain management access via a crafted query, as demonstrated by a V52 query that triggers a power-off action.
Published 2012-06-19 · Modified
7.52 PoCEPSS 0.689
CVE-2009-0693
Multiple buffer overflows in Wyse Device Manager (WDM) 4.7.x allow remote attackers to execute arbitrary code via (1) the User-Agent HTTP header to hserver.dll or (2) unspecified input to hagent.exe.
Published 2012-06-19 · Modified
7.51 PoCEPSS 0.128