HIGH🇬🇧 English

CVE-2026-49506

CVSS 7.2v3.1pub. 2026-06-25upd. 2026-06-26

Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.

oryginał EN
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
  • Dell Wyse Management Suite

    APP
    Dell
    5.5< 5.5
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
RCEPath Traversal
CWE
Referencje

Powiązane podatności

CVE-2026-41120CRITICAL9.8PL ✓ten sam produkt

RCE w Dell Wyse Management Suite — akceptacja niezaufanych danych

CVE-2021-36336CRITICAL9.8PL ✓ten sam produkt

Krytyczna deserializacja w Dell Wyse Management Suite — RCE bez uwierzytelnienia

CVE-2026-66270HIGH7.2ten sam produkt

Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dang...

CVE-2026-63700HIGH7.8ten sam produkt

Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Incorrect Default Permission vulnerab...

CVE-2026-66271HIGH7.2ten sam produkt

Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dang...