Skip to content
dell-technologiesCVE-2026-54471

Dell SmartFabric Manager, versions prior to 2.2.1, contains an Improper Handling of Insufficient Permissions or Privileges vulnerability.

Low3.5CVE-2026-54471 · Published Sep 17, 2026 · updated Sep 18, 2026

Source advisory

Affected versions

PackageAffectedFixed in
SmartFabric Manager
Vendor
< 2.2.1 or later2.2.1 or later
Details and references

Dell SmartFabric Manager, versions prior to 2.2.1, contains an Improper Handling of Insufficient Permissions or Privileges vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Severity from
no source yet
Weakness
CWE-280

More dell-technologies advisories

All
DateAdvisory
Sep 16Dell Update Package Framework, versions prior to 26.07.03, contains a Stack-based Buffer Overflow vulnerability.
CVE-2026-86358Medium6.5fixed in Update Package Framework 26.07.03 or later
Sep 16Dell Repository Manager, versions prior to 3.5.2, contains an Incorrect Default Permissions vulnerability.
CVE-2026-86359High8.5fixed in Repository Manager 3.5.2 or later
Sep 16Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability.
CVE-2026-71180High8.2fixed in Update Package Framework 26.07.03 or later
Sep 16Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability.
CVE-2026-71181Low3.0fixed in Update Package Framework 26.07.03 or later
Sep 16Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability.
CVE-2026-71182Low3.0fixed in Update Package Framework 26.07.03 or later
Sep 16Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability.
CVE-2026-71179High7.3fixed in Update Package Framework 26.07.03 or later

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.