Impact
Dell OpenManage Server Administrator versions before 11.1.0.3 contain an improper privilege management flaw that allows a high‑privileged attacker with remote access to elevate privileges. The vulnerability arises from weaknesses in how the product handles user privilege levels, leading to unauthorized escalation and potential full system compromise.
Affected Systems
The flaw affects Dell OpenManage Server Administrator Managed Node products for Windows, RHEL 8.10, RHEL 9.4, SLES 15, and Ubuntu 22.04. Versions prior to 11.1.0.3 are impacted; later releases contain the fix.
Risk and Exploitability
The CVSS score of 7.2 indicates a high severity, and, though EPSS is not available, the absence from the CISA KEV catalog suggests no confirmed exploits yet. The likely attack vector requires remote access and an attacker already holding limited but elevated privileges, leveraging the privilege mismanagement to gain full control.
OpenCVE Enrichment