PT-2026-78440 · Dell · Dell Command | Update

CVE-2026-49816

·

Published

2026-08-19

·

Updated

2026-08-28

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell Command Update (DCU) versions prior to 5.7.1
Description An issue exists involving the deserialization of untrusted data. A low privileged attacker with local access could exploit this to achieve elevation of privileges. Deserialization is the process of converting a data format, such as JSON or XML, back into an object that can be used by a program.
Recommendations Update Dell Command Update (DCU) to version 5.7.1 or later.

Fix

LPE

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-49816

Affected Products

Dell Command | Update