CVE-2026-66269: High severity Dell OpenManage Server Administrator vulnerability
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell OpenManage Server Administratorto a version that resolves this vulnerability.Fixed in 11.1.0.3
Event History
Frequently Asked Questions
Which deployments are exposed to remote exploitation?
Dell OpenManage Server Administrator deployments running a version earlier than 11.1.0.3 are affected if they are reachable remotely. Exploitation does not require authentication or user interaction.
What level of access does an attacker need?
An attacker needs network access to the affected Dell OpenManage Server Administrator instance. No prior privileges are required.
What is the impact if exploitation succeeds?
Successful exploitation could allow a protection mechanism bypass. The reported impact includes low confidentiality, integrity, and availability effects.
How can I determine whether my environment is affected?
Identify systems running Dell OpenManage Server Administrator and check their installed version. Versions prior to 11.1.0.3 are affected.