9.4

CVE-2026-81046

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Protection Mechanism Failure vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Arbitrary Code Execution within the application context.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Thinos Version < 2605_10.2616
   Dell ≫ Latitude 3330 Version -
   Dell ≫ Latitude 3420 Version -
   Dell ≫ Latitude 3440 Version -
   Dell ≫ Latitude 3450 Version -
   Dell ≫ Latitude 5440 Version -
   Dell ≫ Latitude 5450 Version -
   Dell ≫ Latitude 5520 Version -
   Dell ≫ Latitude 5530 Version -
   Dell ≫ Latitude 5540 Version -
   Dell ≫ Latitude 5550 Version -
   Dell ≫ Optiplex 3000 Tc Version -
   Dell ≫ Optiplex 5400 All-in-one Version -
   Dell ≫ Optiplex 7020 Version -
   Dell ≫ Optiplex All-in-one 7410 Version -
   Dell ≫ Optiplex All-in-one 7420 Version -
   Dell ≫ Optiplex Micro Plus 7010 Version -
   Dell ≫ Precision 3260 Compact Version -
   Dell ≫ Precision 3280 Version -
   Dell ≫ Pro 14 Pc14250 Version -
   Dell ≫ Pro 16 Pc16250 Version -
   Dell ≫ Pro 16 Plus Pb16250 Version -
   Dell ≫ Pro 24 All-in-one Version -
   Dell ≫ Pro 24 All-in-one Plus Qb24250 Version -
   Dell ≫ Pro Max 14 Version -
   Dell ≫ Pro Max 16 Plus Version -
   Dell ≫ Pro Max Microfcm2250 Version -
   Dell ≫ Pro Micro-thin Client Q9m1260 Version -
   Dell ≫ Pro Micro Qcm1250 Version -
   Dell ≫ Pro Rugged 13 Ra13250 Version -
   Dell ≫ Pro Rugged 14 Rb14250 Version -
   Dell ≫ Pro Slim Low Sff Version -
   Dell ≫ Pro Slim Plus Xe5 Oem Qbs1250 Version -
   Dell ≫ Pro Tower Plus Xe5 Oem Qbt1250 Version -
   Dell ≫ Pro Tower Qct1250 Version -
   Dell ≫ Wyse 5070 Extended Thin Client Version -
   Dell ≫ Wyse 5070 Thin Client Version -
   Dell ≫ Wyse 5470 All-in-one Thin Client Version -
   Dell ≫ Wyse 5470 Mtc Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.3
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
EMC 9.4 3.9 5.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

https://www.dell.com/support/kbdoc/en-us/000502746/dsa-2026-389-security-update-for-dell-thinos-10-for-multiple-vulnerabilities
Vendor Advisory