Skip to content
Dell TechnologiesCVE-2026-70423

Dell Technologies OpenManage Enterprise: XML external entity

Medium6.5CVE-2026-70423 · Published Aug 19, 2026 · updated Aug 21, 2026

Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

Dell Technologies advisory

Affected versions

PackageAffectedFixed in
OpenManage Enterprise
Product
< 4.7.0 or later4.7.0 or later
Details and references

More Dell Technologies advisories

All Dell Technologies
Advisory
Dell Technologies OpenManage Enterprise: SQL injection
High8.8Aug 19
Dell Command Update (DCU): improper authorization
Medium5.5Aug 19
Dell Command Update (DCU): information disclosure
Medium5.5Aug 19
Dell Command Update (DCU): XML external entity
Medium6.5Aug 19
Dell Command Update (DCU): missing authorization
High8.8Aug 19
Dell Command Update (DCU): missing authorization
High7.3Aug 19

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.