Impact
Dell OpenManage Server Administrator versions prior to 11.1.0.3 contain a missing authentication flaw for a critical function. If an attacker gains local access without valid credentials, they may exploit the flaw and cause a denial of service. The vulnerability could be leveraged to disrupt management services, potentially impacting server availability during critical operations.
Affected Systems
Affected systems include Dell OpenManage Server Administrator Managed Node for Windows, as well as for RHEL 8.10, RHEL 9.4, SLES 15, and Ubuntu 22.04. All installations running a version earlier than 11.1.0.3 are susceptible.
Risk and Exploitability
The CVSS score of 4 indicates low severity. EPSS is not available and the vulnerability is not listed in the CISA KEV catalog. The flaw is exploitable only from a local environment, requiring an attacker to reach the host locally. Even though it is not a remote or widespread exploit, denial of service can affect critical infrastructure if exploited during maintenance or change windows.
OpenCVE Enrichment