CVE-2026-56685: OS Command Injection
Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell ObjectScaleto a version that resolves this vulnerability.Fixed in 4.3.0.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-56685?
The severity of CVE-2026-56685 is high with a score of 7.3.
How do I fix CVE-2026-56685?
To fix CVE-2026-56685, upgrade Dell ObjectScale to version 4.3.0.1 or later.
What type of vulnerability is CVE-2026-56685?
CVE-2026-56685 is an OS Command Injection vulnerability.
Who can exploit CVE-2026-56685?
A low privileged attacker with local access can potentially exploit CVE-2026-56685.
What could happen if CVE-2026-56685 is exploited?
If exploited, CVE-2026-56685 could lead to command execution on the affected system.