Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability. A locally authenticated malicious users could potentially exploit this vulnerability in order to write arbitrary files to the system.
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HDell Command \| Intel Vpro Out Of Band
APPDell< 4.4.0
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Related vulnerabilities
CVE-2026-24502HIGH8.8same product
Dell Command | Intel vPro Out of Band, versions prior to 4.7.0, contain an Uncontrolled Search Path Element vu...
CVE-2023-23697MEDIUM4.7same product
Dell Command | Intel vPro Out of Band, versions before 4.4.0, contain an arbitrary folder delete vulnerability...
CVE-2026-22769CRITICAL10.0⚠ KEVPL ✓same vendor
Dell RecoverPoint for VMs — zahardkodowane dane uwierzytelniające (RCE, root)
CVE-2026-70419CRITICAL9.1same vendor
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements ...
CVE-2026-54489CRITICAL9.1PL ✓same vendor
Dell Virtual Storage Integrator — ujawnienie sesji i przejęcie konta