CVE-2026-54793: XSS
Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell OpenManage Enterpriseto a version that resolves this vulnerability.Fixed in 4.7.0
Event History
Frequently Asked Questions
What access and interaction are required to exploit this issue?
An attacker needs remote access and low-privileged access to Dell OpenManage Enterprise. Exploitation also requires user interaction.
What is the likely impact if exploitation succeeds?
Successful exploitation could expose information and affect integrity. The supplied severity vector does not indicate an availability impact.
Which versions should be prioritized for remediation?
Dell OpenManage Enterprise versions earlier than 4.7.0 are affected. Upgrade to version 4.7.0 or later.