{"id":"CVE-2026-82163","published":"2026-09-21T19:17:11.580","lastModified":"2026-09-21T19:17:11.580","description":"Dell Command | Intel vPro Out of Band, versions prior to 4.7.2, contain an Incorrect Default Permissions vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Disclosure.","cvssScore":5.5,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","cwes":["CWE-276"],"vendors":[],"products":[],"references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000502470/dsa-2026-377-security-update-for-dell-command-intel-vpro-out-of-band-for-an-incorrect-default-permissions-vulnerability","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"The flaw is an Incorrect Default Permissions vulnerability in Dell Command | Intel vPro Out of Band versions prior to 4.7.2, allowing a low-privileged attacker with local access to potentially exploit it for Information Disclosure.","exploitability":"Exploitation requires local access and is moderately difficult due to the need for specific permissions and conditions.","blast_radius":"If exploited, the impact is limited to Information Disclosure within the local network or system.","remediation":"Update to Dell Command | Intel vPro Out of Band version 4.7.2 or later to mitigate the vulnerability.","tags":["information-disclosure","local-privilege-escalation","patch-available"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-22T06:24:44.201Z"}}