Code Execution Vulnerability in Dell ThinOS Products
CVE-2026-81052

6.8MEDIUM

Key Information:

Vendor

Dell

Status
Vendor
CVE Published:
10 September 2026

What is CVE-2026-81052?

Dell ThinOS 10 versions earlier than 2605_10.2616 are susceptible to a security flaw that allows an unauthenticated attacker with physical access to the device to execute arbitrary code. This vulnerability arises from the system's failure to perform integrity checks during the code download process, potentially allowing malicious code to be run, compromising the device's security. Administrators are urged to update to the latest version to mitigate this risk.

Affected Version(s)

ThinOS 10 0 < 2605_10.2616

References

CVSS V3.1

Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dell Technologies would like to thank saltedfish for reporting this issue
.