CVE-2026-41120
Critical · CVSS 9.8Dell Wyse Management Suite (WMS) — Acceptance of Extraneous Untrusted Data With Trusted Data (CWE-349) leading to Remote Code Execution
- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- No
- Class
- other
- CWE-349
Description
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.
Search profile — drives PoC discovery
Symbols WyseManagementSuiteWMSDSA-2026-225CVE-2026-41120WMS 5.5 HF1
Keywords CVE-2026-41120Dell Wyse Management Suite RCEWMS 5.5 exploitCWE-349 Dell WMSDSA-2026-225 PoCWyse Management Suite untrusted data RCEDell WMS low privileged RCEWMS 5.5 HF1 vulnerability
Versions: prior to WMS 5.5 HF1
References
Status: enriched · ingested 2026-06-27T00:00:38.000Z · profiled 2026-07-01T12:30:14.000Z