CVE-2026-81467
קריטית 9.8
תיאור (מקור, אנגלית)
Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 3% (אחוזון 100) נכון ל-4/10/2026
- CWE
- CWE-78
מוצרים מושפעים
dell: thinos; dell: latitude 3330; dell: latitude 3420; dell: latitude 3440; dell: latitude 3450; dell: latitude 5440; dell: latitude 5450; dell: latitude 5520; dell: latitude 5530; dell: latitude 5540; dell: latitude 5550; dell: optiplex 3000 tc; dell: optiplex 5400 all-in-one; dell: optiplex 7020; dell: optiplex all-in-one 7410