Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-41120: Dell Wyse Management Suite accepts untrusted data from internet

CVE-2026-41120
Summary

Versions prior to WMS 5.5 HF1 of Dell Wyse Management Suite may allow an attacker with remote access to run malicious code on the system. This could happen if an attacker tricks the system into accepting bad data from the internet. To fix this, update to WMS 5.5 HF1 or later.

Original title
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could pot...
Original description
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.
nvd CVSS3.1 9.8
Vulnerability type
CWE-349
Published: 25 Jun 2026 · Updated: 20 Jul 2026 · First seen: 25 Jun 2026