Server-Side Request Forgery Vulnerability in Dell OpenManage Server Administrator
CVE-2026-81443
6.4MEDIUM
Key Information:
What is CVE-2026-81443?
Dell OpenManage Server Administrator, prior to version 11.1.0.3, has a critical security flaw that allows low-privileged attackers with remote access to exploit a Server-Side Request Forgery (SSRF) vulnerability. This could enable attackers to manipulate requests sent from the server, potentially leading to unauthorized actions or data exposure.
Affected Version(s)
OpenManage Server Administrator Managed Node (Patch) for Windows 0 < 11.1.0.3
OpenManage Server Administrator Managed Node for RHEL 8.10 0 < 11.1.0.3
OpenManage Server Administrator Managed Node for RHEL 9.4 0 < 11.1.0.3
References
CVSS V3.1
Score:
6.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Dell would like to thank saltedfish for reporting these issues.