#Dell
All CosmicBytez Labs articles tagged #Dell, across news, security advisories, how-to guides, and projects.
- Security
CVE-2026-66269: Dell OpenManage Server Administrator Unsafe Reflection Flaw
Dell patches an unauthenticated unsafe-reflection flaw in OpenManage Server Administrator that lets remote attackers bypass protection mechanisms.
- Security
CVE-2026-73600: Dell PowerProtect Data Manager Stack Buffer Overflow
A stack buffer overflow in Dell PowerProtect Data Manager's file-level restore agent lets a high-privileged attacker trigger information disclosure.
- Security
CVE-2026-63700: Dell Wyse Management Suite Privilege Escalation
Dell patches a high-severity privilege escalation flaw in Wyse Management Suite allowing local attackers to achieve full system compromise.
- Security
CVE-2026-53481: Dell PowerProtect Data Domain Path Traversal — CVSS 9.8
A critical path traversal vulnerability in Dell PowerProtect Data Domain backup appliances allows authenticated low-privilege users to read and write...
- Security
CVE-2026-53483: Dell PowerProtect Data Domain Authentication Bypass — CVSS 9.8
A critical authentication bypass in Dell PowerProtect Data Domain allows unauthenticated remote attackers to gain access to the backup platform. Combined...
- Security
CVE-2026-49814: Dell PowerProtect Data Domain OS Command Injection
A high-severity OS command injection vulnerability in Dell PowerProtect Data Domain allows authenticated remote attackers to execute arbitrary commands...
- Security
CVE-2026-46735: Dell DDPM Mac OS Command Injection Allows Local Privilege Escalation
A high-severity OS command injection flaw in Dell Display and Peripheral Manager for macOS (versions prior to 2.3) allows low-privileged local attackers...
- Security
Dell ECS and ObjectScale: Hard-Coded Credentials
A critical CVSS 9.8 hard-coded credentials vulnerability in Dell ECS and ObjectScale allows unauthenticated local attackers to gain full filesystem access...
- Security
CVE-2026-35155: Dell iDRAC10 Race Condition Enables
Dell iDRAC10 versions 1.20.70.50 and 1.30.05.10 contain a race condition vulnerability allowing authenticated low-privileged attackers to gain elevated...
- Security
CVE-2025-36568: Dell PowerProtect Data Domain BoostFS
A high-severity insufficiently protected credentials vulnerability in Dell PowerProtect Data Domain BoostFS allows low-privileged local attackers to...
- Security
Dell RecoverPoint Zero-Day Exploited by Chinese APT Since
A maximum-severity CVSS 10.0 hardcoded credentials vulnerability in Dell RecoverPoint for VMs has been under active exploitation by China-nexus threat...