Dell Command | Integration Suite for System Center, versions prior to 6.2.0, contains arbitrary file write vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability in order to perform an arbitrary write as system.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:HDell Command \| Integration Suite For System Center
APPDell< 6.2.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Path Traversal
CWE
Related vulnerabilities
CVE-2023-24572MEDIUM4.7same product
Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete ...
CVE-2026-22769CRITICAL10.0⚠ KEVPL ✓same vendor
Dell RecoverPoint for VMs — zahardkodowane dane uwierzytelniające (RCE, root)
CVE-2026-70419CRITICAL9.1same vendor
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements ...
CVE-2026-67261CRITICAL9.8PL ✓same vendor
Dell Virtual Storage Integrator – OS Command Injection z uprawnieniami root (RCE bez uwierzytelnienia)
CVE-2026-54489CRITICAL9.1PL ✓same vendor
Dell Virtual Storage Integrator — ujawnienie sesji i przejęcie konta