Junglewise Threat Intelligence

CVE-2026-81439: Dell OpenManage Server Administrator incorrect authorization bypass

CVE-2026-81439 · Severity: low · CVSS 3.7 · Published 2026-09-17

Technologies: Dell OpenManage Server Administrator. Vendors: Dell.

Executive brief

Dell OpenManage Server Administrator is a system management tool used to remotely monitor and administer Dell servers. This vulnerability allows a low-privileged attacker with network access to bypass access controls, potentially gaining unauthorized access to protected system functions or sensitive configuration data.

Technical details

CVE-2026-81439 is an incorrect authorization vulnerability in Dell OpenManage Server Administrator versions prior to 11.1.0.3. A low-privileged attacker with remote network access can exploit this flaw by performing specific operations that bypass authorization checks, requiring some user interaction (UI:R) and higher attack complexity (AC:H). The vulnerability allows an attacker to bypass protection mechanisms and access protected functions or information they are not authorized to access. Exploitation requires existing low-privilege credentials and network connectivity to the affected system. The vendor has released patch version 11.1.0.3 or later to remediate this issue.

Affected products

  • Dell OpenManage Server Administrator prior to 11.1.0.3

Timeline

  • 2026-09-17: disclosed

References

Related threats