Back to search
CVE-2009-0695
Published: Jun 19, 2012
Modified: Sep 17, 2024
PUBLISHED
Description
hagent.exe in Wyse Device Manager (WDM) 4.7.x does not require authentication for commands, which allows remote attackers to obtain management access via a crafted query, as demonstrated by a V52 query that triggers a power-off action.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
VU#654545
third-party-advisory
x_refsource_CERT-VN
20090710 'Secure' Wyse thin clients vulnerable to remote exploit bugs
mailing-list
x_refsource_FULLDISC
19137
exploit
x_refsource_EXPLOIT-DB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now