DSA-2026-326: Security Update for Dell OpenManage Server Administrator (OMSA) Network Access Vulnerabilities

Zusammenfassung: Dell OpenManage Server Administrator (OMSA) remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Dieser Artikel gilt für Dieser Artikel gilt nicht für Dieser Artikel ist nicht an ein bestimmtes Produkt gebunden. In diesem Artikel werden nicht alle Produktversionen aufgeführt.

Auswirkungen

High

Details

Proprietary Code CVE

Description

CVSS Base Score

CVSS Vector String

CVE-2026-56793

Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.

7.7

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:LThis hyperlink is taking you to a website outside of Dell Technologies.

CVE-2026-56794

Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for attacker.

6.5

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NThis hyperlink is taking you to a website outside of Dell Technologies.

 

Proprietary Code CVE

Description

CVSS Base Score

CVSS Vector String

CVE-2026-56793

Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.

7.7

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:LThis hyperlink is taking you to a website outside of Dell Technologies.

CVE-2026-56794

Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for attacker.

6.5

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NThis hyperlink is taking you to a website outside of Dell Technologies.

 

Dell Technologies empfiehlt allen Kunden, sowohl die CVSS-Gesamtbewertung als auch alle relevanten zeitlichen und umweltbezogenen Bewertungen zu berücksichtigen, die sich auf den potenziellen Schweregrad einer bestimmten Sicherheitsschwachstelle auswirken können.

Betroffene Produkte und Korrektur

Product

Affected Versions

Remediated Versions

Link

Dell OpenManage Server Administrator Managed Node (Patch) for Windows

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=4WVX8

Dell OpenManage Server Administrator Managed Node for RHEL 8.10

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=FM0PC

Dell OpenManage Server Administrator Managed Node for RHEL 9.4

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=HWPHM

Dell OpenManage Server Administrator Managed Node for SLES 15

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=31TFR

 

Product

Affected Versions

Remediated Versions

Link

Dell OpenManage Server Administrator Managed Node (Patch) for Windows

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=4WVX8

Dell OpenManage Server Administrator Managed Node for RHEL 8.10

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=FM0PC

Dell OpenManage Server Administrator Managed Node for RHEL 9.4

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=HWPHM

Dell OpenManage Server Administrator Managed Node for SLES 15

Versions prior to 11.1.0.2

Version 11.1.0.2

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=31TFR

 

Revisionsverlauf

Revision

Date

Description

1.0

2026-08-03

Initial Release

 

Danksagung

  • CVE-2026-56793: Dell would like to thank Huynh Dinh Vu (WinD39) for reporting this issue.
  • CVE-2026-56794: Dell would like to thank Huynh Dinh Vu (WinD39) and Huynh Dinh Van for reporting this issue.

Zugehörige Informationen

Betroffene Produkte

OpenManage Server Administrator
Artikeleigenschaften
Artikelnummer: 000494958
Artikeltyp: Dell Security Advisory
Zuletzt geändert: 03 Aug. 2026
Antworten auf Ihre Fragen erhalten Sie von anderen Dell NutzerInnen
Support Services
Prüfen Sie, ob Ihr Gerät durch Support Services abgedeckt ist.