CVE-2026-66269 PUBLISHED

Assigner: dell
Reserved: 24.07.2026 Published: 17.09.2026 Updated: 17.09.2026

Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS Score: 7.3

Product Status

Vendor Dell
Product Dell OpenManage Server Administrator Managed Node (Patch) for Windows
Versions Default: unaffected
  • affected from 0 to 11.1.0.3 (excl.)
Vendor Dell
Product Dell OpenManage Server Administrator Managed Node for RHEL 8.10
Versions Default: unaffected
  • affected from 0 to 11.1.0.3 (excl.)
Vendor Dell
Product Dell OpenManage Server Administrator Managed Node for RHEL 9.4
Versions Default: unaffected
  • affected from 0 to 11.1.0.3 (excl.)
Vendor Dell
Product Dell OpenManage Server Administrator Managed Node for SLES 15
Versions Default: unaffected
  • affected from 0 to 11.1.0.3 (excl.)
Vendor Dell
Product Dell OpenManage Server Administrator Managed Node for Ubuntu 22.04
Versions Default: unaffected
  • affected from 0 to 11.1.0.3 (excl.)

References

Problem Types

  • CWE-470: Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') CWE