CVE-2024-49557: Dell Smartfabric OS10

High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.

Affected products

  • Dell Smartfabric OS10: from 10.5.4.0, before 10.5.4.13 (fixed in 10.5.4.13); from 10.5.5.0, before 10.5.5.12 (fixed in 10.5.5.12); from 10.5.6.0, before 10.5.6.6 (fixed in 10.5.6.6)

Published 2024-11-12. Last modified 2026-06-17.