CVE-2026-63695: Critical severity Dell SmartFabric OS10 vulnerability
Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session Fixation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Session theft.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell SmartFabric OS10 Softwareto a version that resolves this vulnerability.Fixed in 10.6.1.3
Event History
Frequently Asked Questions
Which deployments are affected?
Dell SmartFabric OS10 versions prior to 10.6.1.3 are affected.
Does exploitation require an account or user interaction?
No. The vulnerability is described as exploitable by an unauthenticated remote attacker, and the supplied vector indicates no privileges or user interaction are required.
What could a successful exploit allow?
Successful exploitation could lead to session theft, with the supplied severity vector indicating high confidentiality, integrity, and availability impact.