DSA-2026-165: Security Update for Dell AppSync Vulnerabilities.

Sammendrag: Dell AppSync remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Denne artikkelen gjelder for Denne artikkelen gjelder ikke for Denne artikkelen er ikke knyttet til noe bestemt produkt. Det er ikke produktversjonene som identifiseres i denne artikkelen.

Påvirkning

High

Detaljer

Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2026-27110 Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass and Unauthorized access. 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-28257 Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. 7.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-28258 Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. 7.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2026-27110 Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass and Unauthorized access. 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-28257 Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. 7.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-28258 Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. 7.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
Dell Technologies anbefaler at alle kunder tar hensyn til både grunnpoengsummen og alle relevante, midlertidige og miljømessige resultater som kan påvirke den potensielle alvorlighetsgraden knyttet til bestemte sikkerhetsproblemer.

Berørte produkter og utbedring

CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2026-27110, CVE-2026-28257, CVE-2026-28258 Dell AppSync 4.6.0.4, 4.6.1.0 4.6.1.1 https://www.dell.com/support/product-details/en-us/product/appsync/drivers
CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2026-27110, CVE-2026-28257, CVE-2026-28258 Dell AppSync 4.6.0.4, 4.6.1.0 4.6.1.1 https://www.dell.com/support/product-details/en-us/product/appsync/drivers

Endelige og midlertidige løsninger

n/a

Endringshistorikk

Revision

Date

Description

1.0

2026-08-24

Initial Release

 

Bekreftelser

Dell would like to thank brocked200 for reporting this issue.

Relatert informasjon

Berørte produkter

AppSync
Artikkelegenskaper
Artikkelnummer: 000502484
Artikkeltype: Dell Security Advisory
Sist endret: 24 aug. 2026
Få svar på spørsmålene dine fra andre Dell-brukere
Støttetjenester
Sjekk om enheten din er dekket av støttetjenestene.