HIGH✓ PATCH🇵🇱 Wersja polska

CVE-2026-63700

CVSS 7.8v3.1pub. 2026-08-14upd. 2026-08-17

Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Incorrect Default Permission vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Privilege Escalation.

CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
  • Dell Wyse Management Suite

    APP
    Dell
    < 2605.0.2
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
LPE
CWE
References

Related vulnerabilities

CVE-2026-41120CRITICAL9.8PL ✓same product

RCE w Dell Wyse Management Suite — akceptacja niezaufanych danych

CVE-2021-36336CRITICAL9.8PL ✓same product

Krytyczna deserializacja w Dell Wyse Management Suite — RCE bez uwierzytelnienia

CVE-2026-66270HIGH7.2same product

Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dang...

CVE-2026-66271HIGH7.2same product

Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dang...

CVE-2026-49506HIGH7.2same product

Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a R...