CVE-2026-26949: Dell Device Management Agent

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell Device Management Agent (DDMA), versions prior to 26.02, contain an Incorrect Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

Affected products

  • Dell Device Management Agent: before 26.02 (fixed in 26.02)

Published 2026-03-04. Last modified 2026-06-17.