Dell Wyse Management Vulnerabilities Enables Complete System Compromise
ID: 8a88bede-45e1-5b3b-9fc6-2ff5f3af24f0
STIX ID: report--8a88bede-45e1-5b3b-9fc6-2ff5f3af24f0
Feed Name: cybersecurityNews.com
Threat Score
A security analysis shows that two logic flaws in Dell Wyse Management Suite On‑Premises (CVE-2026-22765 and CVE-2026-22766) can be chained to allow unauthenticated attackers to escalate to administrator and deploy a JSP web shell for remote code execution by abusing device registration, exposed AD import APIs, password-reset/LDAP weaknesses, and file repository path reconfiguration; Dell released WMS 5.5 on 2026-02-23 to address these issues.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
