CVE-2026-81048
גבוהה 8.8
תיאור (מקור, אנגלית)
Dell ThinOS 10, versions prior to 2605_10.2616, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Remote Code execution
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 2% (אחוזון 100) נכון ל-4/10/2026
- CWE
- CWE-77
מוצרים מושפעים
dell: thinos; dell: latitude 3330; dell: latitude 3420; dell: latitude 3440; dell: latitude 3450; dell: latitude 5440; dell: latitude 5450; dell: latitude 5520; dell: latitude 5530; dell: latitude 5540; dell: latitude 5550; dell: optiplex 3000 tc; dell: optiplex 5400 all-in-one; dell: optiplex 7020; dell: optiplex all-in-one 7410