Description
Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges.
Published: 2026-09-01
Score: 8.8 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A Protection Mechanism Failure in Dell PowerStore allows an authenticated user with limited privileges to bypass access restrictions and gain higher privileges, effectively letting an attacker redirect management paths and control storage resources. The flaw is classified as CWE‑693, indicating that proper access controls were not enforced.

Affected Systems

Affected systems include Dell PowerStore models 1000T, 1200T, 3000T, 3200Q, 3200T, 5000T, 500T, 5200Q, 5200T, 7000T, 9000T, and 9200T. No specific version details are provided; the vulnerability applies to all currently supported releases at the time of the advisory.

Risk and Exploitability

The CVSS score of 8.8 signifies high severity. The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog. An attacker requires valid credentials with at least limited access; once logged in, the flaw can be used to elevate privileges without additional attack vectors. The combination of a high score and lack of widespread exploitation mitigations imposes a significant risk on environments deploying the affected PowerStore appliances.

Generated by OpenCVE AI on September 1, 2026 at 15:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Deploy the Dell PowerStore security update published in DSA‑2026‑330 to patch the protection mechanism failure.
  • Enforce least‑privilege by restricting user accounts’ permissions and disabling any unnecessary privileged accounts.
  • Enable auditing and monitor for privilege escalation events, reviewing logs for unusual access patterns.

Generated by OpenCVE AI on September 1, 2026 at 15:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 01 Sep 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell powerstore 1000t
Dell powerstore 1200t
Dell powerstore 3000t
Dell powerstore 3200q
Dell powerstore 3200t
Dell powerstore 5000t
Dell powerstore 500t
Dell powerstore 5200q
Dell powerstore 5200t
Dell powerstore 7000t
Dell powerstore 9000t
Dell powerstore 9200t
Vendors & Products Dell
Dell powerstore 1000t
Dell powerstore 1200t
Dell powerstore 3000t
Dell powerstore 3200q
Dell powerstore 3200t
Dell powerstore 5000t
Dell powerstore 500t
Dell powerstore 5200q
Dell powerstore 5200t
Dell powerstore 7000t
Dell powerstore 9000t
Dell powerstore 9200t

Tue, 01 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Description Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges.
Weaknesses CWE-693
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Dell Powerstore 1000t Powerstore 1200t Powerstore 3000t Powerstore 3200q Powerstore 3200t Powerstore 5000t Powerstore 500t Powerstore 5200q Powerstore 5200t Powerstore 7000t Powerstore 9000t Powerstore 9200t
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-09-01T13:57:18.608Z

Reserved: 2026-08-25T12:04:33.629Z

Link: CVE-2026-79684

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-01T14:17:41.797

Modified: 2026-09-01T14:17:41.797

Link: CVE-2026-79684

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-01T14:45:03Z

Weaknesses
  • CWE-693

    Protection Mechanism Failure