CVE-2026-23858: XSS
Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Script Injection.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23858?
CVE-2026-23858 is considered a low severity vulnerability that allows for potential cross-site scripting attacks.
How do I fix CVE-2026-23858?
To remediate CVE-2026-23858, you should upgrade to Dell Wyse Management Suite version 5.5 or higher.
What types of attacks can exploit CVE-2026-23858?
CVE-2026-23858 can be exploited by low privileged attackers to perform script injection attacks.
Who is affected by CVE-2026-23858?
Organizations using Dell Wyse Management Suite versions prior to 5.5 are affected by CVE-2026-23858.
What does cross-site scripting mean in the context of CVE-2026-23858?
In the context of CVE-2026-23858, cross-site scripting refers to the vulnerability that allows attackers to inject malicious scripts into web pages viewed by users.