CVE-2024-37137
28.06.2024, 02:15
Dell Key Trust Platform, v3.0.6 and prior, contains Use of a Cryptographic Primitive with a Risky Implementation vulnerability. A local privileged attacker could potentially exploit this vulnerability, leading to privileged information disclosure.Enginsight
Vendor | Product | Version |
---|---|---|
dell | cloudlink | 𝑥 < 7.1.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-1240 - Use of a Cryptographic Primitive with a Risky ImplementationTo fulfill the need for a cryptographic primitive, the product implements a cryptographic algorithm using a non-standard, unproven, or disallowed/non-compliant cryptographic implementation.
- CWE-327 - Use of a Broken or Risky Cryptographic AlgorithmThe use of a broken or risky cryptographic algorithm is an unnecessary risk that may result in the exposure of sensitive information.