CVE-2026-22766 – Dell Wyse Management Suite
“When endpoint management is exposed, control over every device is on the line.”
Dell addressed multiple vulnerabilities in Wyse Management Suite that impact access control and privilege boundaries. CVE-2026-22765 allows attackers to escalate privileges due to insufficient validation, potentially granting administrative control over managed endpoints. CVE-2026-22766 introduces an additional access control weakness that could enable unauthorized actions within the management platform.
CVE-2026-22765 has a CVSS score of 8.8, which is High severity. CVE-2026-22766 has a CVSS score of 7.2, which is High severity. There is no verified evidence of active exploitation or publicly available proof-of-concept code. The patch strengthens authentication and authorization controls to prevent unauthorized access and reduce risk across managed devices.
Key Details
- Affected Product
- Dell Wyse Management Suite
- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- High
- User Interaction
- None
- CWE Classification
- CWE-434