Server-Side Request Forgery Vulnerability in Dell OpenManage Server Administrator
CVE-2026-81443

6.4MEDIUM

What is CVE-2026-81443?

Dell OpenManage Server Administrator, prior to version 11.1.0.3, has a critical security flaw that allows low-privileged attackers with remote access to exploit a Server-Side Request Forgery (SSRF) vulnerability. This could enable attackers to manipulate requests sent from the server, potentially leading to unauthorized actions or data exposure.

Affected Version(s)

OpenManage Server Administrator Managed Node (Patch) for Windows 0 < 11.1.0.3

OpenManage Server Administrator Managed Node for RHEL 8.10 0 < 11.1.0.3

OpenManage Server Administrator Managed Node for RHEL 9.4 0 < 11.1.0.3

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dell would like to thank saltedfish for reporting these issues.
.