logo

Dell Wyse Management Vulnerabilities Enables Complete System Compromise

ID: 8a88bede-45e1-5b3b-9fc6-2ff5f3af24f0

STIX ID: report--8a88bede-45e1-5b3b-9fc6-2ff5f3af24f0

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-03-24

Date Updated: 2026-04-21

Author: Abinaya

...
...

A security analysis shows that two logic flaws in Dell Wyse Management Suite On‑Premises (CVE-2026-22765 and CVE-2026-22766) can be chained to allow unauthenticated attackers to escalate to administrator and deploy a JSP web shell for remote code execution by abusing device registration, exposed AD import APIs, password-reset/LDAP weaknesses, and file repository path reconfiguration; Dell released WMS 5.5 on 2026-02-23 to address these issues.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.