PT-2026-78479 · Dell · Dell Command | Update

CVE-2026-67268

·

Published

2026-08-19

·

Updated

2026-08-20

CVSS v3.1

6.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell Command Update (DCU) versions prior to 5.7.1
Description An Improper Restriction of XML External Entity Reference exists, which allows a low privileged attacker with local access to potentially achieve elevation of privileges and Server-side request forgery (SSRF), a technique used to induce the server to make requests to an unintended location.
Recommendations Update Dell Command Update (DCU) to version 5.7.1 or later.

Fix

LPE

XXE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-67268

Affected Products

Dell Command | Update