DSA-2026-094: Security Update for Dell Optimizer for an Improper Link Resolution Vulnerability
Summary: Dell Optimizer remediation is available for an Improper Link Resolution vulnerability that could be exploited by malicious users to compromise the affected system.
Impact
High
Details
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-25906 |
Dell Optimizer, versions prior to 6.3.1, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. |
7.3 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-25906 |
Dell Optimizer, versions prior to 6.3.1, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. |
7.3 |
Affected Products & Remediation
|
Product |
Affected Versions |
Remediated Versions |
Release Date |
Link |
|
Dell Optimizer |
Versions 6.0.0.0 to 6.3.0.0 |
Version 6.3.1.0 and later |
02/17/2026 |
|
Product |
Affected Versions |
Remediated Versions |
Release Date |
Link |
|
Dell Optimizer |
Versions 6.0.0.0 to 6.3.0.0 |
Version 6.3.1.0 and later |
02/17/2026 |
Revision History
|
Revision |
Date |
Description |
|
1.0 |
2026-03-03 |
Initial Release |
Acknowledgements
Dell Technologies would like to thank falconCorrup for reporting this issue.