Critical Vulnerabilities in Dell Wyse Management Suite Enable Remote Code Execution
ID: cd52fdb8-be6b-5926-8762-a945efe2ca40
STIX ID: report--cd52fdb8-be6b-5926-8762-a945efe2ca40
Feed Name: ThreatCluster
**Dell Wyse Management Suite vulnerabilities — CVE-2026-41120 and CVE-2026-49506**: Dell disclosed two critical vulnerabilities affecting WMS versions prior to 5.5 HF1. CVE-2026-41120 (CVSS 9.8) allows low-privileged attackers to achieve remote code execution without user interaction, while CVE-2026-49506 is a path traversal issue that requires high privileges to exploit. Dell has released patches and urges immediate upgrades; security teams should enhance monitoring and review access controls. The vulnerabilities were disclosed by researcher Tien Phan.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
