Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dangerous Type vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HDell Wyse Management Suite
APPDell< 2605.0.2
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
RCE
CWE
Related vulnerabilities
CVE-2026-41120CRITICAL9.8PL ✓same product
RCE w Dell Wyse Management Suite — akceptacja niezaufanych danych
CVE-2021-36336CRITICAL9.8PL ✓same product
Krytyczna deserializacja w Dell Wyse Management Suite — RCE bez uwierzytelnienia
CVE-2026-63700HIGH7.8same product
Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Incorrect Default Permission vulnerab...
CVE-2026-66271HIGH7.2same product
Dell Wyse Management Suite (WMS), versions prior to 2605.0.2, contain an Unrestricted Upload of File with Dang...
CVE-2026-49506HIGH7.2same product
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a R...