Dell OpenManage Server Administrator <11.1.0.2: Relative Path Traversal
CVE-2026-56794 Published on August 7, 2026
Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for attacker.
Vulnerability Analysis
CVE-2026-56794 is exploitable with network access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality, with no impact on integrity and availability.
Weakness Type
Relative Path Traversal
The software uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences such as ".." that can resolve to a location that is outside of that directory. This allows attackers to traverse the file system to access files or directories that are outside of the restricted directory.
Affected Versions
Dell OpenManage Server Administrator Managed Node (Patch) for Windows:- Before 11.1.0.2 is affected.
- Before 11.1.0.2 is affected.
- Before 11.1.0.2 is affected.
- Before 11.1.0.2 is affected.