OS Command Injection Vulnerability in Dell SmartFabric OS10 Software
CVE-2026-35160

5MEDIUM

Key Information:

Vendor

Dell

Vendor
CVE Published:
3 September 2026

What is CVE-2026-35160?

The Dell SmartFabric OS10 Software is susceptible to an OS Command Injection flaw. When exploited by an attacker with high privileges and remote access, this vulnerability can lead to unauthorized command execution. It is crucial for users and administrators to update to version 10.5.6.14 or later to mitigate potential risks.

Affected Version(s)

SmartFabric OS10 Software 0 < 10.5.6.14

References

CVSS V3.1

Score:
5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dell would like to thank kkking for reporting this issue.
.