HIGH✓ PATCH🇬🇧 English

CVE-2026-32804

CVSS 8.1v3.1pub. 2026-06-17upd. 2026-06-25

Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Unauthorized access.

oryginał EN
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
  • Dell Powerflex Manager

    APP
    Dell
    < 4.5.5.24.6.0 – 5.1.0.1 (bez)
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
Auth Bypass
CWE
Referencje

Powiązane podatności

CVE-2026-56688CRITICAL9.1PL ✓ten sam produkt

OS Command Injection w Dell PowerFlex Manager — wykonanie poleceń jako root

CVE-2024-37143CRITICAL10.0PL ✓ten sam produkt

Krytyczna podatność RCE w produktach Dell PowerFlex, InsightIQ i Data Lakehouse

CVE-2026-56690HIGH8.5PL ✓ten sam produkt

SQL Injection w Dell PowerFlex Manager — ujawnienie danych

CVE-2026-56689HIGH7.7PL ✓ten sam produkt

SQL Injection w Dell PowerFlex Manager — ujawnienie informacji

CVE-2026-35065HIGH8.8ten sam produkt

Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) a Missing Authentication for Critical Function...