CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2026-41120

Critical · CVSS 9.8

Dell Wyse Management Suite (WMS) — Acceptance of Extraneous Untrusted Data With Trusted Data (CWE-349) leading to Remote Code Execution

CVSS
9.8
nvd
EPSS
KEV
No
Class
other
CWE-349

Description

Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.

Search profile — drives PoC discovery

Symbols WyseManagementSuiteWMSDSA-2026-225CVE-2026-41120WMS 5.5 HF1
Keywords CVE-2026-41120Dell Wyse Management Suite RCEWMS 5.5 exploitCWE-349 Dell WMSDSA-2026-225 PoCWyse Management Suite untrusted data RCEDell WMS low privileged RCEWMS 5.5 HF1 vulnerability
Versions: prior to WMS 5.5 HF1

References

Status: enriched · ingested 2026-06-27T00:00:38.000Z · profiled 2026-07-01T12:30:14.000Z