Impact
Dell PowerStore SDNAS contains an out‑of‑bounds write vulnerability in SMB/CIFS. An unauthenticated attacker with remote access could potentially exploit this flaw, leading to denial of service and remote execution. The vulnerability can be triggered by a specially crafted SMB packet and causes a crash that may be persistent if automatic restarts are enabled. A more sophisticated attacker could use the same vulnerability to achieve remote code execution. The weakness is a CWE‑787 out‑of‑bounds write.
Affected Systems
The flaw affects all Dell PowerStore storage arrays in the 1000T, 1200T, 3000T, 3200Q, 3200T, 5000T, 500T, 5200Q, 5200T, 7000T, 9000T, and 9200T lines. No specific firmware revisions are listed, so any component running the SMB/CIFS services on these models is assumed vulnerable.
Risk and Exploitability
The vulnerability has a CVSS score of 9.8, indicating critical severity. The EPSS score is 0.00462, meaning a very low but nonzero exploitation probability, and it is not yet listed in CISA’s KEV catalog. Because the attack requires no prior authentication and can be performed over the network, the attack vector is remote. An attacker can send crafted SMB traffic from outside the trusted network, trigger a crash, and, with a more advanced payload, potentially achieve remote code execution.
OpenCVE Enrichment