eSeSIX Thintune thin clients running firmware 2.4.38 and earlier store sensitive usernames and passwords in cleartext in configuration files for the keeper library, which allows attackers to gain access.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Thintune_extreme | Esesix | 2.4.38 (including) | 2.4.38 (including) |
| Thintune_l | Esesix | 2.4.38 (including) | 2.4.38 (including) |
| Thintune_m | Esesix | 2.4.38 (including) | 2.4.38 (including) |
| Thintune_mobile | Esesix | 2.4.38 (including) | 2.4.38 (including) |
| Thintune_s | Esesix | 2.4.38 (including) | 2.4.38 (including) |
| Thintune_xm | Esesix | 2.4.38 (including) | 2.4.38 (including) |
| Thintune_xs | Esesix | 2.4.38 (including) | 2.4.38 (including) |