← לוח פגיעויות

CVE-2026-81467

קריטית 9.8

תיאור (מקור, אנגלית)

Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution.

מדדים

CVSS 3.1
9.8 (CRITICAL) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
3% (אחוזון 100) נכון ל-4/10/2026
CWE
CWE-78

מוצרים מושפעים

dell: thinos; dell: latitude 3330; dell: latitude 3420; dell: latitude 3440; dell: latitude 3450; dell: latitude 5440; dell: latitude 5450; dell: latitude 5520; dell: latitude 5530; dell: latitude 5540; dell: latitude 5550; dell: optiplex 3000 tc; dell: optiplex 5400 all-in-one; dell: optiplex 7020; dell: optiplex all-in-one 7410

קישורים