CVE-2025-32752 MEDIUM

CVE-2025-32752

Vendor Dell
Product ThinOS
Weakness CWE-312 · Cleartext storage
Published May 29, 2025
Last update June 12, 2025

CVSS base score

5.7/10
Attack vector Physical
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity Low

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L

What the vulnerability does

01Description

Dell ThinOS 2502 and prior contain a Cleartext Storage of Sensitive Information vulnerability. A high privileged attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure.

Key dates

02Disclosure timeline

May 29, 2025 CVE published
June 12, 2025 Record updated