DSA-2026-326: Security Update for Dell OpenManage Server Administrator (OMSA) Network Access Vulnerabilities
Oversigt: Dell OpenManage Server Administrator (OMSA) remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
Virkning
High
Oplysninger
|
Proprietary Code CVE |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-56793 |
Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. |
7.7 |
|
|
CVE-2026-56794 |
Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for attacker. |
6.5 |
|
Proprietary Code CVE |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-56793 |
Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. |
7.7 |
|
|
CVE-2026-56794 |
Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for attacker. |
6.5 |
Berørte produkter og udbedring
|
Product |
Affected Versions |
Remediated Versions |
Link |
|
Dell OpenManage Server Administrator Managed Node (Patch) for Windows |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=4WVX8 |
|
Dell OpenManage Server Administrator Managed Node for RHEL 8.10 |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=FM0PC |
|
Dell OpenManage Server Administrator Managed Node for RHEL 9.4 |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=HWPHM |
|
Dell OpenManage Server Administrator Managed Node for SLES 15 |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=31TFR |
|
Product |
Affected Versions |
Remediated Versions |
Link |
|
Dell OpenManage Server Administrator Managed Node (Patch) for Windows |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=4WVX8 |
|
Dell OpenManage Server Administrator Managed Node for RHEL 8.10 |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=FM0PC |
|
Dell OpenManage Server Administrator Managed Node for RHEL 9.4 |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=HWPHM |
|
Dell OpenManage Server Administrator Managed Node for SLES 15 |
Versions prior to 11.1.0.2 |
Version 11.1.0.2 |
https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=31TFR |
Revisionshistorik
|
Revision |
Date |
Description |
|
1.0 |
2026-08-03 |
Initial Release |
Bekræftelser
- CVE-2026-56793: Dell would like to thank Huynh Dinh Vu (WinD39) for reporting this issue.
- CVE-2026-56794: Dell would like to thank Huynh Dinh Vu (WinD39) and Huynh Dinh Van for reporting this issue.