THE article discusses two critical vulnerabilities found in the Dell Wyse Management Suite, identified as CVE-2026-41120 and CVE-2026-49506, with severity ratings of 9.8 and 7.2 respectively. These vulnerabilities allow remote code execution, posing a significant threat to enterprise endpoints managed by the suite. Users are urged to update to version 5.5 HF1 or later, as patches are available. No active exploitation of these flaws has been confirmed thus far.
The first flaw involves the acceptance of untrusted data leading to arbitrary command execution, while the second is a path traversal issue that allows attackers to access restricted areas of the server.