Database/Firmware, BMC & network fabric
Dell OpenManage Enterprise: authenticated SQL injection exposes management database contents
Impact
A low-privileged remote console user can inject SQL and read data from the OpenManage Enterprise database. That database is the inventory and operational record of the managed estate - hosts, service tags, firmware baselines, group membership and console user records. Disclosure hands an attacker a precise map of the fleet's management plane and of which servers are behind on firmware. Dell scopes the outcome to information exposure; the record does not claim write or command execution for this issue.
Who can reach it
Remote network access to the OpenManage Enterprise interface with a low-privileged console account. Authentication is required.
What to do
Upgrade the appliance to OpenManage Enterprise 4.7.0 or later per DSA-2026-359 - the same update that carries CVE-2026-54795, so take both in one window. Appliance update and restart only; no host downtime. Keep the console confined to the management VLAN and prune unnecessary low-privileged accounts.
References
Related entries
- Linux KVM - intra-host migration/mirroring of SEV-SNP VMs: KVM allowed intra-host migration and mirroring of SEV-SNPCVE-2026-72286 · Linux KVM - intra-host migration/mirroring of SEV-SNP VMsHigh
- Linux kernel (drivers/infiniband/hw/bnxt_re): The variable-WQE send-queue slot count came straight from userspace withCVE-2026-72497 · Linux kernel (drivers/infiniband/hw/bnxt_re)High
- Linux bnxt_re RoCE driver (CQ toggle page use-after-free): The completion-queue variant of the toggle-pageCVE-2026-72499 · Linux bnxt_re RoCE driver (CQ toggle page use-after-free)High
- Linux bnxt_re RoCE driver (SRQ toggle page use-after-free): A use-after-free in the Broadcom RoCE driver — the toggleCVE-2026-72500 · Linux bnxt_re RoCE driver (SRQ toggle page use-after-free)High
- U-Boot: malicious NFS server overflows the boot-time NFS read bufferCVE-2026-74220 · U-Boot net/nfs-common.c (nfs_read_reply length validation)High
- U-Boot: crafted NFS READLINK reply corrupts memory in the bootloaderCVE-2026-74221 · U-Boot net/nfs-common.c (nfs_readlink_reply symlink length)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.