CVE-2026-71180 — Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability.
Description
Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
CVSS v3.1 base metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HHigh severity
Band computed from the CVSS base score, not the source's own label — so it means the same thing across every feed.
AV
Local
Attack Vector
AC
Low
Attack Complexity
PR
Low
Privileges Required
UI
None
User Interaction
S
Unchanged
Scope
C
High
Confidentiality
I
High
Integrity
A
High
Availability
Affected
- Vendor
- dell
- Product
- update package framework
Versions
- < 26.07.03
Stated as the source expressed them.
Related threats
same CWE or vendorCVE-2026-106436 — The BSON encoder in the MongoDB PHP Driver does not check some return values after a document exceeds libbson's size limit.
CVE-2026-106436 · 3h ago
CVE-2026-67269 — Dell Container Storage Modules (CSM) Operator, versions prior to 1.18.0 contains an Improper Privilege Management vulnerability in the ContainerSto…
CVE-2026-67269 · 2d ago
CVE-2026-63692 — Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authentication for Critical Function vulnerability.
CVE-2026-63692 · 2d ago
CVE-2026-63688 — Dell Container Storage Modules (CSM), versions prior to v1.18.0, contains a Missing Authentication for Critical Function vulnerability in the csm-a…
CVE-2026-63688 · 2d ago
CVE-2026-61421 — Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of Hard-coded Credentials vulnerability in the CSM Authorization.
CVE-2026-61421 · 2d ago
CVE-2026-54472 — Dell Container Storage Modules, versions prior to 1.18.0, contain(s) an Use of Hard-coded Credentials vulnerability in the csm-docs.
CVE-2026-54472 · 2d ago