8.1
CVE-2026-67262
- EPSS 0.23%
- Veröffentlicht 18.08.2026 17:24:30
- Zuletzt bearbeitet 20.08.2026 13:02:12
- Erkennungen
Dell PowerStore contains a Missing Authorization vulnerability. An attacker with access to a mapped host could exploit this vulnerability to read from or write to LUNs that the host is not authorized to access, bypassing per-initiator LUN access controls and leading to protection mechanism bypass.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerDell
≫
Produkt
PowerStore 500T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 1000T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 1200T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 3000T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 3200Q
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 3200T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 5000T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 5200Q
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 5200T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 7000T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 9000T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
HerstellerDell
≫
Produkt
PowerStore 9200T
Default Statusunaffected
Version
0
Version <
5.0.0.2-2761110 or later
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.145 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| EMC | 8.1 | 2.2 | 5.9 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-862 Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
https://www.dell.com/support/kbdoc/en-us/000497829/dsa-2026-330-dell-powerstore-t-security-update-for-multiple-vulnerabilities