CVE-2026-40713
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
02/06/2026
Last modified:
22/07/2026
Description
Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access control vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Information exposure.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:dell:thinos:*:*:*:*:*:*:*:* | 2602_10.0765 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



