CVE-2026-67268

Summary

Dell Command Update (DCU), versions prior to 5.7.1, contain an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges and Server-side request forgery.

Affected Software

VendorProductVersion RangeStatus
DellDell Command Update (DCU)0 < 5.7.1affected

Weaknesses

  • CWE-611: CWE-611: Improper Restriction of XML External Entity Reference

References