Description
Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Stack-based Buffer Overflow vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
Published: 2026-09-17
Score: 7.2 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

Dell OpenManage Server Administrator, versions before 11.1.0.3, contain a stack‑based buffer overflow that permits a highly privileged attacker with remote access to execute arbitrary code on the managed node. The flaw originates from insufficient input validation, allowing an attacker to overwrite the return address of the service process. If exploited, the attacker effectively gains the privileges of the service and can take full control of the affected system.

Affected Systems

Dell OpenManage Server Administrator Managed Node for Windows, RHEL 8.10, RHEL 9.4, SLES 15 and Ubuntu 22.04 running any version earlier than 11.1.0.3 are affected. The vulnerability impacts all systems that use these components without the official update.

Risk and Exploitability

The CVSS score of 7.2 reflects high severity. No KEV listing is present and the EPSS score is unavailable, indicating no confirmed widespread exploitation yet, though the risk remains significant. A remote attacker with privileged access can trigger the stack‑based overflow and achieve code execution, thereby compromising the confidentiality, integrity, and availability of the managed node.

Generated by OpenCVE AI on September 17, 2026 at 22:29 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply Dell’s security update that upgrades OpenManage Server Administrator to version 11.1.0.3 or later on all managed nodes.
  • Limit remote access to the OpenManage service by restricting network reachability or enforcing MFA for privileged accounts.
  • If the service is no longer required, disable or isolate it on systems and monitor logs for signs of buffer overflow attempts.

Generated by OpenCVE AI on September 17, 2026 at 22:29 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 02 Oct 2026 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Dell openmanage Server Administrator
CPEs cpe:2.3:a:dell:openmanage_server_administrator:*:*:*:*:*:*:*:*
Vendors & Products Dell openmanage Server Administrator

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell dell Openmanage Server Administrator Managed Node For Rhel 8.10
Dell dell Openmanage Server Administrator Managed Node For Rhel 9.4
Dell dell Openmanage Server Administrator Managed Node For Sles 15
Dell dell Openmanage Server Administrator Managed Node For Ubuntu 22.04
Dell openmanage Server Administrator Managed Node (patch) For Windows
Vendors & Products Dell
Dell dell Openmanage Server Administrator Managed Node For Rhel 8.10
Dell dell Openmanage Server Administrator Managed Node For Rhel 9.4
Dell dell Openmanage Server Administrator Managed Node For Sles 15
Dell dell Openmanage Server Administrator Managed Node For Ubuntu 22.04
Dell openmanage Server Administrator Managed Node (patch) For Windows

Thu, 17 Sep 2026 22:45:00 +0000

Type Values Removed Values Added
Title Stack Buffer Overflow in Dell OpenManage Server Administrator

Thu, 17 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 17 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Description Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains a Stack-based Buffer Overflow vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 7.2, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Dell Dell Openmanage Server Administrator Managed Node For Rhel 8.10 Dell Openmanage Server Administrator Managed Node For Rhel 9.4 Dell Openmanage Server Administrator Managed Node For Sles 15 Dell Openmanage Server Administrator Managed Node For Ubuntu 22.04 Openmanage Server Administrator Openmanage Server Administrator Managed Node (patch) For Windows
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-09-18T03:55:39.068Z

Reserved: 2026-08-26T20:04:54.733Z

Link: CVE-2026-81480

cve-icon Vulnrichment

Updated: 2026-09-17T13:36:45.924Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-17T12:18:28.080

Modified: 2026-10-02T14:14:15.620

Link: CVE-2026-81480

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-18T20:37:27Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow