← לוח פגיעויות

CVE-2026-71179

גבוהה 7.3

תיאור (מקור, אנגלית)

Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

מדדים

CVSS 3.1
7.3 (HIGH) מקור הציון: CNA CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE
CWE-78

קישורים