Dell TechnologiesCVE-2026-61419
Dell Technologies ThinOS 10: improper access control
High7.8CVE-2026-61419 · Published Aug 24, 2026 · updated Sep 2, 2026
Dell ThinOS 10, versions prior to 2605_10.2518, contain an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| ThinOS 10 Product | < 2605_10.2518 | 2605_10.2518 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-284
More Dell Technologies advisories
All Dell Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Aug 26 | Dell Technologies PowerProtect One: stack buffer overflow | High7.5 | 20.3.0.0 |
| Aug 26 | Dell Technologies Cyber Recovery: SQL injection | Medium6.5 | Power Protect Cyber Recovery 20.3.0.0+2 more |
| Aug 26 | Dell Technologies iDRAC9: improper access control | Medium5.9 | 7.20.30.50 or later+1 more |
| Aug 26 | Dell Technologies Cloud Disaster Recovery: command injection | High7.2 | CDR 20.3 |
| Aug 26 | Dell Technologies Cloud Disaster Recovery: command injection | Critical9.1 | CDR 20.3 |
| Aug 24 | Dell Client BIOS contains an Improper Link Resolution Before File Access | Medium6.6 | 1.37.0+7 more |