DSA-2026-225: Security Update for Dell Wyse Management Suite (WMS) for Multiple Vulnerabilities
Summary: Dell Wyse Management Suite (WMS) remediation is available for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.
Impact
Critical
Details
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-41120 |
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution. |
9.8 |
|
|
CVE-2026-49506 |
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution. |
7.2 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-41120 |
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution. |
9.8 |
|
|
CVE-2026-49506 |
Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution. |
7.2 |
Affected Products & Remediation
|
Product |
Affected Versions |
Remediated Versions |
Release Date |
Link |
|
Dell Wyse Management Suite (WMS) |
Versions prior to 5.5 HF1 |
Version 5.5 HF1 or later |
05/08/2026 |
|
Product |
Affected Versions |
Remediated Versions |
Release Date |
Link |
|
Dell Wyse Management Suite (WMS) |
Versions prior to 5.5 HF1 |
Version 5.5 HF1 or later |
05/08/2026 |
Revision History
"
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2026-06-16 | Initial Release |
Acknowledgements
Dell would like to thank Tien Phan for reporting these issues