CRITICAL🇵🇱 Wersja polska

CVE-2022-26869

CVSS 9.8v3.1pub. 2022-06-02upd. 2024-11-21

Dell PowerStore versions 2.0.0.x, 2.0.1.x and 2.1.0.x contains an open port vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to information disclosure and arbitrary code execution.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Dell Powerstoreos

    OS
    Dell
    2.0.0.0 – 2.1.1.0 (excl.)
  • Dell Powerstore T

    HW
    Dell
    all versions
  • Dell Powerstore X

    HW
    Dell
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCEAuth Bypass
CWE
References

Related vulnerabilities

CVE-2023-32478CRITICAL9.0PL ✓same product

Dell PowerStore — zapis wrażliwych danych w plikach logów

CVE-2024-51532HIGH7.1same product

Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')...

CVE-2022-26870HIGH7.0same product

Dell PowerStore versions 2.1.0.x contain an Authentication bypass vulnerability. A remote unauthenticated atta...

CVE-2022-22557HIGH7.5same product

PowerStore contains Plain-Text Password Storage Vulnerability in PowerStore X & T environments running version...

CVE-2026-28265MEDIUM4.4same product

PowerStore zawiera lukę Path Traversal w użytkowniku Service. Atakujący z niskimi uprawnieniami posiadający do...