CVE-2026-44272
גבוהה 8.8
תיאור (מקור, אנגלית)
Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-13/8/2026
- CWE
- CWE-89
מוצרים מושפעים
dell: wyse management suite
קישורים
- https://www.dell.com/support/kbdoc/en-us/000472001/dsa-2026-247 Vendor Advisory