HIGH🇵🇱 Wersja polska

CVE-2022-26870

CVSS 7.0v3.1pub. 2022-10-21upd. 2024-11-21

Dell PowerStore versions 2.1.0.x contain an Authentication bypass vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability under specific configuration. An attacker would gain unauthorized access upon successful exploit.

CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
  • Dell Powerstoreos

    OS
    Dell
    2.1.0.02.1.0.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Auth Bypass
CWE
References

Related vulnerabilities

CVE-2023-32478CRITICAL9.0PL ✓same product

Dell PowerStore — zapis wrażliwych danych w plikach logów

CVE-2022-26869CRITICAL9.8PL ✓same product

Dell PowerStore — otwarty port umożliwia RCE bez uwierzytelnienia

CVE-2024-51532HIGH7.1same product

Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')...

CVE-2022-22557HIGH7.5same product

PowerStore contains Plain-Text Password Storage Vulnerability in PowerStore X & T environments running version...

CVE-2026-28265MEDIUM4.4same product

PowerStore zawiera lukę Path Traversal w użytkowniku Service. Atakujący z niskimi uprawnieniami posiadający do...