PT-2026-104478 · Undefined · Undefined

CVE-2026-101207

·

Published

2026-10-02

·

Updated

2026-10-02

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Armadin researcher @mhskai2017 has uncovered two authenticated RCE vulnerability affecting Dell OpenManage Integration and Lenovo XClarity Integration with Windows Admin Center (CVE-2026-101207 and CVE-2026-65949, both High severity CVSS 8.8).
A domain user credential is enough to gain SYSTEM on the WAC host, hijack admin sessions, and move laterally to every asset it manages. Patch immediately.
Advisory and mitigation details: https://t.co/zxhmewkFsB and https://t.co/GAWK5NujrQ
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-101207

Affected Products

Undefined