Cross-Site Scripting Vulnerability in Dell OpenManage Enterprise
CVE-2026-54793

4.6MEDIUM

Key Information:

Vendor

Dell

Vendor
CVE Published:
19 August 2026

What is CVE-2026-54793?

Dell OpenManage Enterprise, specifically versions earlier than 4.7.0, is susceptible to a cross-site scripting vulnerability due to improper neutralization of input during web page generation. This flaw allows a low privileged attacker with remote access to potentially execute malicious scripts in a user's browser, which could lead to unauthorized information exposure and other security breaches. It is crucial for users to update their systems to the latest version to mitigate this risk effectively.

Affected Version(s)

OpenManage Enterprise 0 < 4.7.0 or later

References

CVSS V3.1

Score:
4.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dell would like to thank WinD39 - Huynh Dinh Vu for reporting these issues.
.