CVE-2026-56686: OS Command Injection
Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell ObjectScaleto a version that resolves this vulnerability.Fixed in 4.3.0.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-56686?
CVE-2026-56686 has a severity rating of 7.8, which is considered high.
How do I fix CVE-2026-56686?
To fix CVE-2026-56686, update Dell ObjectScale to version 4.3.0.1 or later.
What type of vulnerability is CVE-2026-56686?
CVE-2026-56686 is an OS Command Injection vulnerability due to improper neutralization of special elements.
Who can be affected by CVE-2026-56686?
A low privileged attacker with local access could be affected by CVE-2026-56686.
What impact does CVE-2026-56686 have on Dell ObjectScale?
CVE-2026-56686 can lead to elevation of privileges for attackers exploiting the vulnerability.