9.8
CVE-2026-81467
- EPSS 3.84%
- Veröffentlicht 10.09.2026 15:40:57
- Zuletzt bearbeitet 16.09.2026 20:47:19
- Erkennungen
Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution.Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Thinos Version < 2605_10.2616
Dell ≫ Latitude 3330 Version -
Dell ≫ Latitude 3420 Version -
Dell ≫ Latitude 3440 Version -
Dell ≫ Latitude 3450 Version -
Dell ≫ Latitude 5440 Version -
Dell ≫ Latitude 5450 Version -
Dell ≫ Latitude 5520 Version -
Dell ≫ Latitude 5530 Version -
Dell ≫ Latitude 5540 Version -
Dell ≫ Latitude 5550 Version -
Dell ≫ Optiplex 3000 Tc Version -
Dell ≫ Optiplex 5400 All-in-one Version -
Dell ≫ Optiplex 7020 Version -
Dell ≫ Optiplex All-in-one 7410 Version -
Dell ≫ Optiplex All-in-one 7420 Version -
Dell ≫ Optiplex Micro Plus 7010 Version -
Dell ≫ Precision 3260 Compact Version -
Dell ≫ Precision 3280 Version -
Dell ≫ Pro 14 Pc14250 Version -
Dell ≫ Pro 16 Pc16250 Version -
Dell ≫ Pro 16 Plus Pb16250 Version -
Dell ≫ Pro 24 All-in-one Version -
Dell ≫ Pro 24 All-in-one (65w) Qc24250 Version -
Dell ≫ Pro 24 All-in-one Plus Qb24250 Version -
Dell ≫ Pro Max 14 Version -
Dell ≫ Pro Max 16 Plus Version -
Dell ≫ Pro Max Microfcm2250 Version -
Dell ≫ Pro Micro-thin Client Q9m1260 Version -
Dell ≫ Pro Micro Qcm1250 Version -
Dell ≫ Pro Rugged 13 Ra13250 Version -
Dell ≫ Pro Rugged 14 Rb14250 Version -
Dell ≫ Pro Slim Low Sff Version -
Dell ≫ Pro Slim Plus Xe5 Oem Qbs1250 Version -
Dell ≫ Pro Tower Plus Xe5 Oem Qbt1250 Version -
Dell ≫ Pro Tower Qct1250 Version -
Dell ≫ Wyse 5070 Extended Thin Client Version -
Dell ≫ Wyse 5070 Thin Client Version -
Dell ≫ Wyse 5470 All-in-one Thin Client Version -
Dell ≫ Wyse 5470 Mtc Version -
Dell ≫ Latitude 3420 Version -
Dell ≫ Latitude 3440 Version -
Dell ≫ Latitude 3450 Version -
Dell ≫ Latitude 5440 Version -
Dell ≫ Latitude 5450 Version -
Dell ≫ Latitude 5520 Version -
Dell ≫ Latitude 5530 Version -
Dell ≫ Latitude 5540 Version -
Dell ≫ Latitude 5550 Version -
Dell ≫ Optiplex 3000 Tc Version -
Dell ≫ Optiplex 5400 All-in-one Version -
Dell ≫ Optiplex 7020 Version -
Dell ≫ Optiplex All-in-one 7410 Version -
Dell ≫ Optiplex All-in-one 7420 Version -
Dell ≫ Optiplex Micro Plus 7010 Version -
Dell ≫ Precision 3260 Compact Version -
Dell ≫ Precision 3280 Version -
Dell ≫ Pro 14 Pc14250 Version -
Dell ≫ Pro 16 Pc16250 Version -
Dell ≫ Pro 16 Plus Pb16250 Version -
Dell ≫ Pro 24 All-in-one Version -
Dell ≫ Pro 24 All-in-one (65w) Qc24250 Version -
Dell ≫ Pro 24 All-in-one Plus Qb24250 Version -
Dell ≫ Pro Max 14 Version -
Dell ≫ Pro Max 16 Plus Version -
Dell ≫ Pro Max Microfcm2250 Version -
Dell ≫ Pro Micro-thin Client Q9m1260 Version -
Dell ≫ Pro Micro Qcm1250 Version -
Dell ≫ Pro Rugged 13 Ra13250 Version -
Dell ≫ Pro Rugged 14 Rb14250 Version -
Dell ≫ Pro Slim Low Sff Version -
Dell ≫ Pro Slim Plus Xe5 Oem Qbs1250 Version -
Dell ≫ Pro Tower Plus Xe5 Oem Qbt1250 Version -
Dell ≫ Pro Tower Qct1250 Version -
Dell ≫ Wyse 5070 Extended Thin Client Version -
Dell ≫ Wyse 5070 Thin Client Version -
Dell ≫ Wyse 5470 All-in-one Thin Client Version -
Dell ≫ Wyse 5470 Mtc Version -
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.84% | 0.895 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| EMC | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
https://www.dell.com/support/kbdoc/en-us/000502746/dsa-2026-389-security-update-for-dell-thinos-10-for-multiple-vulnerabilities