Impact
Dell OpenManage Server Administrator versions prior to 11.1.0.3 contain an Incorrect Authorization flaw that allows an attacker with low privileges and remote access to bypass protection mechanisms, potentially escalating privileges.
Affected Systems
Affected systems are Dell OpenManage Server Administrator Managed Node on Windows, RHEL 8.10, RHEL 9.4, SLES 15, and Ubuntu 22.04, all running versions earlier than 11.1.0.3.
Risk and Exploitability
The CVSS score of 3.7 indicates a low severity impact. With no EPSS score available and no listing in CISA KEV, the likelihood of public exploitation is currently unknown, but the remote nature of the attack vector allows a low‑privileged attacker to exploit the authorization flaw when remote access to the management interface is permitted.
OpenCVE Enrichment