CVE-2026-103778: Medium severity Dell Command | Configure vulnerability
Dell Command | Configure (DCC), versions prior to 5.2.3.35 contain a Use of Hard-coded Cryptographic Key vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Command | Configure (DCC)to a version that resolves this vulnerability.Fixed in 5.2.3.35
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker needs local access to a system running an affected Dell Command | Configure version. No authentication or user interaction is required.
What is the impact of successful exploitation?
Successful exploitation could disclose information. The provided data does not indicate integrity or availability impact.
Which versions need to be updated?
Dell Command | Configure versions earlier than 5.2.3.35 are affected. Update to version 5.2.3.35 or later.