Executive brief
Dell OpenManage Server Administrator is a remote management tool used to monitor and configure Dell servers. A path traversal vulnerability allows a low-privileged remote attacker to read arbitrary files from the server's filesystem, potentially exposing sensitive configuration data, credentials, or other confidential information.
Technical details
CVE-2026-81453 is a path traversal vulnerability (improper limitation of a pathname to a restricted directory) in Dell OpenManage Server Administrator versions prior to 11.1.0.3. The vulnerability allows a low-privileged attacker with remote network access to bypass directory restrictions and access arbitrary files on the affected system. The attack requires network access but no special user interaction; authentication may be required depending on the attack vector. Successful exploitation enables unauthorized filesystem access. Patches are available in version 11.1.0.3 and later.
Affected products
- Dell OpenManage Server Administrator prior to 11.1.0.3
Timeline
- 2026-09-17: disclosed