Executive brief
Dell OpenManage Server Administrator is remote management software used to monitor and administer Dell servers. A high-privileged attacker with network access could exploit an improper privilege management flaw to elevate their access rights further, potentially gaining complete control over the managed server infrastructure.
Technical details
CVE-2026-81445 is an Improper Privilege Management vulnerability in Dell OpenManage Server Administrator versions prior to 11.1.0.3. The vulnerability allows a high-privileged attacker with remote network access to escalate privileges, though the specific mechanism is not detailed in the advisory. Attack precondition requires the attacker to already possess high privileges on the system. Successful exploitation leads to elevation of privileges, potentially allowing unauthorized access to sensitive server management functions and data. The vulnerability has been patched in version 11.1.0.3 and later.
Affected products
- Dell OpenManage Server Administrator prior to 11.1.0.3
Timeline
- 2026-09-17: disclosed: CVE-2026-81445 published