DSA-2026-165: Security Update for Dell AppSync Vulnerabilities.
Sammendrag: Dell AppSync remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
Denne artikkelen gjelder for
Denne artikkelen gjelder ikke for
Denne artikkelen er ikke knyttet til noe bestemt produkt.
Det er ikke produktversjonene som identifiseres i denne artikkelen.
Påvirkning
High
Detaljer
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
| CVE-2026-27110 | Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass and Unauthorized access. | 6.5 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
| CVE-2026-28257 | Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | 7.6 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L |
| CVE-2026-28258 | Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | 7.6 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L |
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
| CVE-2026-27110 | Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Access Control vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass and Unauthorized access. | 6.5 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
| CVE-2026-28257 | Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | 7.6 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L |
| CVE-2026-28258 | Dell AppSync, version(s) 4.6.0.4, contain(s) an Improper Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | 7.6 | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L |
Berørte produkter og utbedring
| CVEs Addressed | Product | Affected Versions | Remediated Versions | Link |
| CVE-2026-27110, CVE-2026-28257, CVE-2026-28258 | Dell AppSync | 4.6.0.4, 4.6.1.0 | 4.6.1.1 | https://www.dell.com/support/product-details/en-us/product/appsync/drivers |
| CVEs Addressed | Product | Affected Versions | Remediated Versions | Link |
| CVE-2026-27110, CVE-2026-28257, CVE-2026-28258 | Dell AppSync | 4.6.0.4, 4.6.1.0 | 4.6.1.1 | https://www.dell.com/support/product-details/en-us/product/appsync/drivers |
Endelige og midlertidige løsninger
n/a
Endringshistorikk
|
Revision |
Date |
Description |
|
1.0 |
2026-08-24 |
Initial Release |
Bekreftelser
Dell would like to thank brocked200 for reporting this issue.
Relatert informasjon
Juridisk ansvarsfraskrivelse
Berørte produkter
AppSyncArtikkelegenskaper
Artikkelnummer: 000502484
Artikkeltype: Dell Security Advisory
Sist endret: 24 aug. 2026
Få svar på spørsmålene dine fra andre Dell-brukere
Støttetjenester
Sjekk om enheten din er dekket av støttetjenestene.