Executive brief
Dell Wyse Management Suite is a centralized management platform used by organizations to administer and monitor thin client and endpoint devices. CVE-2026-81235 is a missing cryptographic step vulnerability that allows a high-privileged attacker with remote access to tamper with system information, potentially compromising the integrity of managed devices and configurations.
Technical details
The vulnerability is a missing cryptographic step weakness in Dell Wyse Management Suite versions prior to 2605.0.3.683. An attacker with high-level administrative privileges and network access can exploit this flaw to bypass cryptographic protections, leading to unauthorized modification of sensitive data. The vulnerability requires high privileges and has a complex attack complexity (AC:H), limiting its exploitation to insider threats or compromised administrator accounts. Successful exploitation enables information tampering with confidentiality, integrity, and availability impact across connected systems.
Affected products
- Dell Wyse Management Suite prior to 2605.0.3.683
Timeline
- 2026-09-15: disclosed
- 2026-09-15: advisory