Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
References
| Link | Resource |
|---|---|
| https://www.dell.com/support/kbdoc/en-us/000500910/dsa-2026-359-security-update-for-dell-openmanage-enterprise-vulnerabilities | Vendor Advisory Patch |
Configurations
History
No history.
Information
Published : 2026-08-19 15:18
Updated : 2026-08-21 17:51
NVD link : CVE-2026-71176
Mitre link : CVE-2026-71176
CVE.ORG link : CVE-2026-71176
JSON object : View
Products Affected
dell
- openmanage_enterprise
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
