CVE-2026-56796: Medium severity Dell Dell Command Update (DCU) vulnerability
Dell Command Update (DCU), versions prior to 5.7.1, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Command Update (DCU)to a version that resolves this vulnerability.Fixed in 5.7.1
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Systems running Dell Command Update versions earlier than 5.7.1 are affected. Exploitation requires local access and a low-privileged account, so remotely unauthenticated attackers are not described as being able to exploit it directly.
What access does an attacker need to exploit the vulnerability?
An attacker needs local access and low privileges on the affected system. No user interaction is required according to the supplied CVSS vector.
What should be updated to remediate the issue?
Update Dell Command Update to version 5.7.1 or later. The affected range is explicitly versions prior to 5.7.1.