CVE-2026-81048

Dell ThinOS 10, versions prior to 2605_10.2616, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Remote Code execution

Scoring

Severity
CRITICAL
CVSS base score
9.6
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CWE
CWE-77
Published
2026-09-10
Last modified
2026-09-10

Affected products

Weakness type

Markdown version · Browse all CVEs