Junglewise Threat Intelligence

CVE-2026-81474: Dell OpenManage Server Administrator heap-based buffer overflow

CVE-2026-81474 · Severity: high · CVSS 7.8 · Published 2026-09-17

Technologies: Dell OpenManage Server Administrator. Vendors: Dell.

Executive brief

Dell OpenManage Server Administrator is a web-based management tool used by organizations to monitor and configure Dell servers. A heap-based buffer overflow vulnerability in versions before 11.1.0.3 allows a low-privileged local attacker to crash the service or gain elevated system privileges, potentially compromising server management and control.

Technical details

Dell OpenManage Server Administrator versions prior to 11.1.0.3 contain a heap-based buffer overflow vulnerability (CVE-2026-81474) in proprietary code. A low-privileged attacker with local access to the system can exploit this memory corruption issue to trigger elevation of privileges. The vulnerability allows an attacker to overwrite memory on the heap, potentially achieving arbitrary code execution with elevated privileges. The fix is available in version 11.1.0.3 and later.

Affected products

  • Dell OpenManage Server Administrator prior to 11.1.0.3

Timeline

  • 2026-09-17: disclosed
  • 2026-09-17: advisory

References

Related threats