CVE-2026-49817: High severity Dell Dell Command Update (DCU) vulnerability
Dell Command Update (DCU), versions prior to 5.7.1, contain a Deserialization of Untrusted Data vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Command Update (DCU)to a version that resolves this vulnerability.Fixed in 5.7.1
Event History
Frequently Asked Questions
Which systems are exposed to this issue?
Systems running Dell Command Update versions earlier than 5.7.1 are affected. Exploitation requires local access and low-privileged access on the system.
What could an attacker achieve?
A low-privileged local attacker could potentially exploit the deserialization flaw to elevate privileges. The reported impact includes high confidentiality, integrity, and availability impact.
What is the remediation?
Update Dell Command Update to version 5.7.1 or later.