CVE-2026-80355: CSRF
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Cross-Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell OpenManage Server Administratorto a version that resolves this vulnerability.Fixed in 11.1.0.3
Event History
Frequently Asked Questions
Which installations need remediation?
Dell OpenManage Server Administrator versions earlier than 11.1.0.3 are affected. Upgrade to version 11.1.0.3 or later based on the available information.
What must an attacker be able to do to exploit this issue?
The attacker needs remote network access and does not need prior authentication. Exploitation requires user interaction, consistent with the CSRF attack vector.
What is the potential impact?
Successful exploitation could lead to remote execution. The supplied severity vector rates integrity and availability impact as low and does not indicate a confidentiality impact.