Improper Link Resolution in Dell Update Package Framework Affects Systems
CVE-2026-71182

3LOW

Key Information:

Vendor

Dell

Vendor
CVE Published:
16 September 2026

What is CVE-2026-71182?

The Dell Update Package Framework has a vulnerability that allows attackers with high privileges and local access to exploit improper link resolution before file access. This could potentially grant the attacker unauthorized access to the filesystem, enabling them to manipulate files or gain sensitive information.

Affected Version(s)

Update Package Framework 0 < 26.07.03 or later

References

CVSS V3.1

Score:
3
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.