eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allow local users to gain privileges by pressing CTRL-SHIFT-ALT-DEL and entering the "maertsJ" password, which is hard-coded into lshell.Referenceshttp://www.osvdb.org/8248http://www.securityfocus.com/bid/10794http://secunia.com/advisories/12154http://securitytracker.com/id?1010770http://marc.info/?l=bugtraq&m=109068491801021&w=2https://exchange.xforce.ibmcloud.com/vulnerabilities/16808