PT-2026-104480 · Undefined · Undefined
CVE-2026-65949
·
Published
2026-10-02
·
Updated
2026-10-02
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Armadin researcher @mhskai2017 has uncovered two authenticated RCE vulnerability affecting Dell OpenManage Integration and Lenovo XClarity Integration with Windows Admin Center (CVE-2026-101207 and CVE-2026-65949, both High severity CVSS 8.8).
A domain user credential is enough to gain SYSTEM on the WAC host, hijack admin sessions, and move laterally to every asset it manages. Patch immediately.
Advisory and mitigation details: https://t.co/zxhmewkFsB and
https://t.co/GAWK5NujrQ
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Undefined