Skip to main content

Share story

Security

Dell urges System Update patch for flaw enabling root access

Dell urges System Update patch for flaw enabling root access Image: Primary
Dell urged customers to update its System Update tool after identifying a critical vulnerability that could let an unauthenticated remote attacker execute code with root privileges on vulnerable PowerEdge servers. SecurityAffairs reported that CVE-2026-86360 has a CVSS severity score of 9.6 and affects versions before 2.3.0.0. The flaw allows attackers to access files outside a restricted directory, potentially compromising the application and underlying operating system. Enterprise IT teams use the tool to deploy BIOS, firmware and software updates. Dell recommends version 2.3.0.0 or later, which also addresses four other vulnerabilities. Dell has not reported active exploitation.
Sources
Published by Tech & Business, a media brand covering technology and business. This story was sourced from securityaffairs.com and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
AI Policy
AI Policy

Pentagon says it has ended use of Anthropic products

The Pentagon has completed its phase-out of Anthropic products, the BBC reported, citing the US Department of Defense. The removal followed a dispute over Anthropic's insistence on contractual restrictions against mass surveillanc...

Security
Security

ClickFix attackers hide executable scripts in browser cache

Microsoft Threat Intelligence has identified a ClickFix attack that stages a malicious script in a browser's cache disguised as a PNG image. Compromised websites then persuade users to run a command that executes the cached conten...

Security Products
Security Products

Texas disclosure puts Oracle healthcare breach at nearly 20 million people

Information released by the Texas attorney general puts the scope of last year's cybersecurity breach at Oracle's healthcare unit at nearly 20 million people, Bloomberg reported. The breach compromised personal information belongi...

Policy Security
Policy Security

OpenAI and Anthropic support mandatory AI breach reporting in Australia

OpenAI and Anthropic told an Australian parliamentary inquiry they would support laws requiring AI developers to disclose breaches involving their systems, EconoTimes reported. The comments follow criticism of OpenAI for waiting t...

Security AI
Security AI

AWS reports 89.0% success for Continuum on code security benchmark

AWS says its Continuum security system passed 819 of 920 tasks on CyberGym-E2E within the benchmark's 90-minute limit, achieving an 89.0% success rate. That exceeds the previous public high of 65.9% by 23.1 percentage points. The...