CVE-2026-81469
7.8 HIGHPublished 2026-09-21 · Updated 2026-09-21
AI risk analysis
- Summary
- The flaw allows a low-privileged local attacker to execute code and gain higher privileges by exploiting an unquoted search path vulnerability in Dell Inventory Collector Client versions prior to 15.0.0.
- Exploitability
- Exploitation requires local access but is relatively straightforward given the high CVSS score, making it a significant risk.
- Blast radius
- If exploited, this could lead to full system compromise and unauthorized code execution with elevated privileges across affected systems.
- Prioritized remediation
- Update Dell Inventory Collector Client to version 15.0.0 or later immediately to mitigate the vulnerability.
rcepriv-escalationlocal-exploitpatch-recommended
Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.
NVD description
Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and Elevation of Privileges
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-428
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-12609PoC
- HIGHCVE-2026-53940PoC
- HIGHCVE-2026-94403
- HIGHCVE-2026-18755
- MEDIUMCVE-2026-66839
- CRITICALCVE-2017-20241
- CRITICALCVE-2017-20242
- CRITICALCVE-2025-29296
Related by shared AI tags and CWE weakness class. Browse the full archive.