CVE-2026-40717
Severity CVSS v4.0:
Pending analysis
Type:
CWE-59
Link Following
Publication date:
03/08/2026
Last modified:
07/08/2026
Description
Dell Monitor driver, version 1.0.0.0, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
Impact
Base Score 3.x
6.60
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:dell:monitor_driver:1.0.0.0:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:aw2526hl:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:aw2725dm:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:aw2726dl:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:aw2726dm:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:aw3225dm:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:aw3425dwm:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2722h:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2722hs:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2723h:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2723hn:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2724hs:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2725h:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:e2725hm:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:g2724d:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



