CVE-2026-26358
- EPSS 0.02%
- Veröffentlicht 19.02.2026 08:47:24
- Zuletzt bearbeitet 20.02.2026 20:58:36
Dell Unisphere for PowerMax, version(s) 10.2, contain(s) a Missing Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
CVE-2026-26360
- EPSS 0.06%
- Veröffentlicht 19.02.2026 08:41:00
- Zuletzt bearbeitet 20.02.2026 20:59:06
Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability to delete arbitrary files.
CVE-2026-26359
- EPSS 0.02%
- Veröffentlicht 19.02.2026 08:34:01
- Zuletzt bearbeitet 20.02.2026 20:58:50
Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the ability to overwrite arbitrary ...
CVE-2026-26362
- EPSS 0.08%
- Veröffentlicht 19.02.2026 08:25:14
- Zuletzt bearbeitet 20.02.2026 20:46:00
Dell Unisphere for PowerMax, version(s) 10.2, contain(s) a Relative Path Traversal vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized modification of critical system files...
CVE-2026-26361
- EPSS 0.04%
- Veröffentlicht 19.02.2026 08:14:59
- Zuletzt bearbeitet 20.02.2026 20:59:17
Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.
CVE-2026-26357
- EPSS 0.04%
- Veröffentlicht 17.02.2026 20:22:10
- Zuletzt bearbeitet 18.02.2026 17:51:53
Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerabili...
CVE-2025-36588
- EPSS 0.03%
- Veröffentlicht 22.01.2026 15:52:01
- Zuletzt bearbeitet 26.02.2026 13:16:16
Dell Unisphere for PowerMax, version(s) 10.2.0.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerabil...
CVE-2025-36589
- EPSS 0.08%
- Veröffentlicht 06.01.2026 16:20:24
- Zuletzt bearbeitet 22.01.2026 20:44:14
Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized acc...
CVE-2025-36595
- EPSS 0.23%
- Veröffentlicht 27.06.2025 13:51:28
- Zuletzt bearbeitet 14.01.2026 18:52:37
Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this v...
CVE-2025-27686
- EPSS 0.31%
- Veröffentlicht 07.04.2025 13:23:08
- Zuletzt bearbeitet 12.01.2026 19:02:51
Dell Unisphere for PowerMax, version(s) prior to 10.2.0.9 and PowerMax version(s) prior to PowerMax 9.2.4.15, contain an Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability. A high privileged attacker wi...