logo

Critical Vulnerabilities in Dell Wyse Management Suite Enable Remote Code Execution

ID: cd52fdb8-be6b-5926-8762-a945efe2ca40

STIX ID: report--cd52fdb8-be6b-5926-8762-a945efe2ca40

Feed Name: ThreatCluster

Threat Score
75/100

Date Published: 2026-06-29

Date Updated: 2026-07-02

...
...

**Dell Wyse Management Suite vulnerabilities — CVE-2026-41120 and CVE-2026-49506**: Dell disclosed two critical vulnerabilities affecting WMS versions prior to 5.5 HF1. CVE-2026-41120 (CVSS 9.8) allows low-privileged attackers to achieve remote code execution without user interaction, while CVE-2026-49506 is a path traversal issue that requires high privileges to exploit. Dell has released patches and urges immediate upgrades; security teams should enhance monitoring and review access controls. The vulnerabilities were disclosed by researcher Tien Phan.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.