Executive brief
Dell OpenManage Server Administrator is a widely-used server management platform that administers and monitors Dell servers across enterprise environments. CVE-2026-81442 is an improper privilege management flaw that allows a low-privileged authenticated attacker to tamper with system information and gain unauthorized access to critical server administration functions, potentially compromising all managed infrastructure.
Technical details
This vulnerability is an improper privilege management issue (CWE-269) in Dell OpenManage Server Administrator versions prior to 11.1.0.3. A low-privileged attacker with remote network access and valid credentials can exploit the flaw to escalate their privileges within the application. The vulnerability enables information tampering and unauthorized access to restricted functions. The attack requires authentication (low privilege account) but no user interaction. Exploitation results in integrity violations and elevated access to system administration capabilities. A patch is available in version 11.1.0.3 and later.
Affected products
- Dell OpenManage Server Administrator prior to 11.1.0.3
Timeline
- 2026-09-17: disclosed
- 2026-09-17: advisory