[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-41120":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-25T20:35:03.799Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":88,"aliases":89,"duplicate_of":9,"upstream":90,"downstream":91,"duplicates":92,"related":93,"reserved_at":9,"published_at":94,"modified_at":95,"state":96,"summary":97,"references_raw":104,"kevs":110,"epss":9,"epss_history":111,"metrics":112,"affected":117},"CVE-2026-41120","Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote Code Execution.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-349","Acceptance of Extraneous Untrusted Data With Trusted Data","The product, when processing trusted data, accepts any untrusted data that is also included with the trusted data, treating the untrusted data as if it were trusted.","weakness","Draft","Base",[19,72,84],{"id":20,"name":21,"techniques":22},"CAPEC-141","Cache Poisoning",[23],{"id":24,"name":25,"tactics":26,"countermeasures":33},"T1557.002","ARP Cache Poisoning",[27,30],{"id":28,"name":29},"TA0031","Credential Access",{"id":31,"name":32},"TA0100","Collection",[34,39,43,47,51,55,59,63,67],{"id":35,"name":36,"tactic":37},"D3-UGLPA","User Geolocation Logon Pattern Analysis",{"name":38},"Detect",{"id":40,"name":41,"tactic":42},"D3-PMAD","Protocol Metadata Anomaly Detection",{"name":38},{"id":44,"name":45,"tactic":46},"D3-CSPP","Client-server Payload Profiling",{"name":38},{"id":48,"name":49,"tactic":50},"D3-PHDURA","Per Host Download-Upload Ratio Analysis",{"name":38},{"id":52,"name":53,"tactic":54},"D3-NTSA","Network Traffic Signature Analysis",{"name":38},{"id":56,"name":57,"tactic":58},"D3-APCA","Application Protocol Command Analysis",{"name":38},{"id":60,"name":61,"tactic":62},"D3-NTCD","Network Traffic Community Deviation",{"name":38},{"id":64,"name":65,"tactic":66},"D3-RTSD","Remote Terminal Session Detection",{"name":38},{"id":68,"name":69,"tactic":70},"D3-NTF","Network Traffic Filtering",{"name":71},"Isolate",{"id":73,"name":74,"techniques":75},"CAPEC-142","DNS Cache Poisoning",[76],{"id":77,"name":78,"tactics":79,"countermeasures":83},"T1584.002","DNS Server",[80],{"id":81,"name":82},"TA0042","Resource Development",[],{"id":85,"name":86,"techniques":87},"CAPEC-75","Manipulating Writeable Configuration Files",[],[],[],[],[],[],[],"2026-06-25T13:28:53.068Z","2026-06-25T14:08:22.786Z","PUBLISHED",{"cisa_kev":98,"cisa_ransomware":98,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":99,"severity_score":100,"severity_version":101,"severity_source":102,"severity_vector":103,"severity_status":96},false,"critical",9.8,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[105],{"url":106,"sources":107,"tags":108},"https://www.dell.com/support/kbdoc/en-in/000465356/dsa-2026-225?msockid=3021cac2195069ed3194ddad186a68f9",[102],[109],"Vendor Advisory",[],[],[113],{"source":102,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":114,"cvss_v4_0":9},{"baseScore":100,"baseSeverity":115,"vectorString":103,"impactScore":100,"exploitabilityScore":116},"CRITICAL",10,[118],{"ecosystem":9,"name":119,"vendor":120,"product":121,"cpe_part":122,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":123},"Wyse Management Suite","dell","wyse management suite","a",[124],{"version":125,"is_range":126,"range_type":102,"version_start":9,"version_start_type":9,"version_end":127,"version_end_type":128,"fixed_in":9},"\u003C Version 5.5 HF1 or later",true,"Version 5.5 HF1 or later","excluding"]