Dell TechnologiesCVE-2026-63695
Dell Technologies SmartFabric OS10 Software: session fixation
Critical9.8CVE-2026-63695 · Published Sep 15, 2026 · updated Sep 16, 2026
Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session Fixation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Session theft.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| SmartFabric OS10 Software Product | < 10.6.1.3 | 10.6.1.3 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-284
More Dell Technologies advisories
All Dell Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 15 | Dell Technologies Wyse Management Suite: tampering | High8.0 | WMS 2605.0.3.683 |
| Sep 15 | Dell Technologies Wyse Management Suite: arbitrary file upload | High8.6 | WMS 2605.0.3.683 |
| Sep 15 | Dell Technologies Wyse Management Suite: improper authentication | Medium6.5 | WMS 2605.0.3.683 |
| Sep 15 | Dell Technologies Wyse Management Suite: missing authentication | High7.5 | WMS 2605.0.3.683 |
| Sep 15 | Dell Technologies Wyse Management Suite: arbitrary file upload | High8.6 | WMS 2605.0.3.683 |
| Sep 15 | Dell Technologies Wyse Management Suite: arbitrary file upload | High8.6 | WMS 2605.0.3.683 |