Unquoted Search Path Vulnerability in UPS Multi-UPS Management Console by Dell
CVE-2026-26033

8.4HIGH

Key Information:

Vendor

Dell Inc.

Vendor
CVE Published:
5 March 2026

What is CVE-2026-26033?

The UPS Multi-UPS Management Console by Dell suffers from a critical Unquoted Search Path or Element vulnerability, allowing users with write access to a specific directory to execute arbitrary code with elevated SYSTEM privileges. This security flaw poses significant risks, as it can be exploited by malicious actors to gain unauthorized access and control over the system. It's essential for users to apply the necessary updates and patches provided by Dell to mitigate the potential threats associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

UPS Multi-UPS Management Console (MUMC) 01.06.0001 (A03)

References

CVSS V4

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

CVSS V3.0

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.