Dell TechnologiesCVE-2026-81467
Dell Technologies ThinOS 10: command injection
Critical9.8CVE-2026-81467 · Published Sep 10, 2026 · updated Sep 16, 2026
Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| ThinOS 10 Product | < 2605_10.2616 | 2605_10.2616 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-78
More Dell Technologies advisories
All Dell Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 10 | Dell Technologies ThinOS 10: command injection | Critical9.1 | 2605_10.2616 |
| Sep 10 | Dell Technologies ThinOS 10: remote code execution | Critical9.4 | 2605_10.2616 |
| Sep 10 | Dell Technologies ThinOS 10: command injection | Critical9.6 | 2605_10.2616 |
| Sep 10 | Dell Technologies ThinOS 10: code execution | Medium4.4 | 2605_10.2616 |
| Sep 10 | Dell ThinOS 10, versions prior to 2605_10.2616 | Medium6.6 | 2605_10.2616 |
| Sep 10 | Dell Technologies ThinOS 10: remote code execution | Medium6.8 | 2605_10.2616 |