CVE-2026-49810: Dell Command PowerShell Provider Dcpp

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Dell Command Powershell Provider (DCPP), versions prior to 2.10.2 contain an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Disclosure.

Affected products

  • Dell Command PowerShell Provider Dcpp: before 2.10.2 (fixed in 2.10.2)

Published 2026-09-21. Last modified 2026-09-24.