← Back to search

CVE-2026-81469

7.8 HIGH

Published 2026-09-21 · Updated 2026-09-21

AI risk analysis

Summary
The flaw allows a low-privileged local attacker to execute code and gain higher privileges by exploiting an unquoted search path vulnerability in Dell Inventory Collector Client versions prior to 15.0.0.
Exploitability
Exploitation requires local access but is relatively straightforward given the high CVSS score, making it a significant risk.
Blast radius
If exploited, this could lead to full system compromise and unauthorized code execution with elevated privileges across affected systems.
Prioritized remediation
Update Dell Inventory Collector Client to version 15.0.0 or later immediately to mitigate the vulnerability.
rcepriv-escalationlocal-exploitpatch-recommended

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Dell Inventory Collector Client, versions prior to 15.0.0, contain an Unquoted Search Path or Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and Elevation of Privileges

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-428

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.

Related CVEs

Related by shared AI tags and CWE weakness class. Browse the full archive.