securityonline.info 6/29/2026, 3:01:33 AM · external

Critical Dell Wyse bug (CVE-2026-41120) lets attackers run code

Critical Dell Wyse bug (CVE-2026-41120) lets attackers run code
CyberSIXT Evidence Panel
Primary Source dell.com
CISA KEV Not in KEV
Patch Patch Available

THE article discusses two critical vulnerabilities found in the Dell Wyse Management Suite, identified as CVE-2026-41120 and CVE-2026-49506, with severity ratings of 9.8 and 7.2 respectively. These vulnerabilities allow remote code execution, posing a significant threat to enterprise endpoints managed by the suite. Users are urged to update to version 5.5 HF1 or later, as patches are available. No active exploitation of these flaws has been confirmed thus far.

The first flaw involves the acceptance of untrusted data leading to arbitrary command execution, while the second is a path traversal issue that allows attackers to access restricted areas of the server.

View Primary Source Via securityonline.info

Article by CyberSIXT