Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-56795

Quick assessment

Affected
Dell Driver Pack For Windows OS
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Dell 服务器更新实用程序(Dell Server Update Utility)在 26.07.01 之前的版本中存在“不可控搜索路径元素”(Uncontrolled Search Path Element)漏洞。一个拥有本地访问权限的低权限攻击者有可能利用此漏洞,从而导致代码执行。

CVSS 8.2 · High
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-56795

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Dell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
对搜索路径元素未加控制
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Dell Driver Pack For Windows OS 0 ~ 26.07.01 -
Dell Driver Pack For Linux OS 0 ~ 26.07.01 -
Dell Server Update Utility, Windows 64-bit format 0 ~ 26.07.01 -
Dell Server Update Utility, Linux 64-bit format 0 ~ 26.07.01 -

II. Public POCs for CVE-2026-56795

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-56795

登录查看更多情报信息。

Vendor Advisories for CVE-2026-56795 (1)

Same Patch Batch · Dell · 2026-09-17 · 24 CVEs total

CVE-2026-81475 8.1 HIGH Dell OMSA 11.1.0.3前版本缺失认证漏洞
CVE-2026-81476 8.1 HIGH Dell OMSA <11.1.0.3 OS命令注入漏洞
CVE-2026-81442 8.1 HIGH Dell OpenManage 11.1.0.3前权限管理漏洞
CVE-2026-81478 8.1 HIGH Dell OMSA 11.1.0.3 硬编码密钥漏洞
CVE-2026-26950 8.1 HIGH Dell SmartFabric Manager 2.2.1前权限提升
CVE-2026-81474 7.8 HIGH Dell OpenManage 11.1.0.3前堆缓冲区溢出提权
CVE-2026-81481 7.5 HIGH Dell OpenManage 11.1.0.3前路径遍历漏洞
CVE-2026-81446 7.4 HIGH 戴尔OpenManage服务器管理员11.1.0.3前SSRF漏洞
CVE-2026-66269 7.3 HIGH Dell OpenManage Server Admin 11.1.0.3前不安全反射漏洞
CVE-2026-80356 7.3 HIGH Dell OpenManage 11.1.0.3前版本敏感信息泄露漏洞
CVE-2026-81440 7.3 HIGH Dell OpenManage Server Administrator 11.1.0.3前硬编码凭据漏洞
CVE-2026-81480 7.2 HIGH Dell OpenManage 11.1.0.3 栈溢出漏洞
CVE-2026-81477 7.2 HIGH Dell OpenManage 11.1.0.3前堆溢出漏洞
CVE-2026-81445 7.2 HIGH Dell 11.1.0.3之前版本权限管理不当
CVE-2026-81447 6.8 MEDIUM 戴尔OpenManage 11.1.0.3前证书验证漏洞
CVE-2026-81453 6.5 MEDIUM Dell OpenManage 11.1.0.3前版本路径遍历
CVE-2026-81443 6.4 MEDIUM Dell OpenManage Server Administrator 11.1.0.3前SSRF漏洞
CVE-2026-81479 5.8 MEDIUM Dell OpenManage 11.1.0.3前拒绝服务漏洞
CVE-2026-80355 5.4 MEDIUM Dell OpenManage 低于11.1.0.3存在CSRF远程执行漏洞
CVE-2026-81441 4.0 MEDIUM Dell OpenManage Server Administrator 11.1.0.3前认证缺失

Showing top 20 of 24 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2026-56795

No comments yet


Leave a comment