Status: UPDATED | Advisory ID: CVE-2026-81238
| CVE | CVE-2026-81238 |
| CVSS Score / Version | 7.5 (High) / CVSS v3.1 |
| Updated | 2026-09-21 |
| CVSS Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
| CVSS Prose | attack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is none; integrity impact is high; availability impact is none. |
| Affected products | dell wyse_management_suite and dell Wyse Management Suite |
| Classified as | CWE-306 (Missing Authentication for Critical Function) |
| Vendor | Product | Affected Versions | Patch Status |
|---|---|---|---|
| dell | wyse_management_suite | ||
| dell | Wyse Management Suite |
| Subsystems | General OT |
| Sectors | Multiple |
Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. (NVD)
Monitor dell's web page for any future patch releases. See vendor advisory link below.