CVE-2026-81240: Malicious File Upload
Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Wyse Management Suiteto a version that resolves this vulnerability.Fixed in 2605.0.3.683
Event History
Frequently Asked Questions
Who is exposed to exploitation?
Dell Wyse Management Suite deployments running a version earlier than 2605.0.3.683 are exposed if they are reachable remotely. Exploitation does not require authentication or user interaction.
What can an attacker achieve?
An unauthenticated remote attacker could upload a dangerous file and potentially obtain remote code execution. The listed impact includes high integrity impact, with low confidentiality and availability impact.
What version should be used to remediate this issue?
Upgrade Dell Wyse Management Suite to version 2605.0.3.683 or later. The vulnerability affects versions prior to 2605.0.3.683.