Use of Hard-coded Cryptographic Key in Dell OpenManage Server Administrator
CVE-2026-81478

8.1HIGH

What is CVE-2026-81478?

Dell OpenManage Server Administrator prior to version 11.1.0.3 contains a vulnerability where hard-coded cryptographic keys may be exploited by an unauthenticated attacker with remote access. This flaw can lead to unauthorized access to sensitive system functionalities, allowing potential adversaries to manipulate or extract information without the user's consent.

Affected Version(s)

OpenManage Server Administrator Managed Node (Patch) for Windows 0 < 11.1.0.3

OpenManage Server Administrator Managed Node for RHEL 8.10 0 < 11.1.0.3

OpenManage Server Administrator Managed Node for RHEL 9.4 0 < 11.1.0.3

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.