Critical Dell System Update Flaw Could Lead To Full Server Takeover

https://images.hothardware.com/contentimages/newsitem/71790/content/16x9_2133x1200_highres-dell-dsu-vulnerabilities-news.jpeg

Organizations utilizing Dell’s System Update (DSU) tools to manage their server infrastructure need to patch their software as quickly as possible. The company has pushed an update to address several major security issues, with the most worrying of the bunch severe enough to provide attackers deep access to a system without needing to be authenticated.

While all the vulnerabilities reported by the company are dangerous in some way, CVE-2026-86360, which is a path traversal vulnerability, is the headliner. According to Dell, “an unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access for [the] attacker.” Once an attacker has gained this access it can be leveraged to run arbitrary code alongside root privileges giving them significant control over the system.

Slightly lower on the totem pole are CVE-2026-86361, which is an Incorrect Permission Assignment for Critical Resource vulnerability, and CVE-2026-86362, an Improper Access Control vulnerability....

Copyright of this story solely belongs to hothardware.com. To see the full text click HERE