Description
Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges.
Published: 2026-09-01
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation
Action: Apply Patch
AI Analysis

Impact

Dell PowerStore suffers a protection mechanism failure that allows an authenticated user with limited privileges to bypass built‑in access controls and gain elevated permissions. The flaw can be leveraged to obtain privileges beyond the user’s intended scope, potentially enabling further exploitation of the system.

Affected Systems

The vulnerability affects Dell PowerStore storage arrays, including the 1000T, 1200T, 3000T, 3200Q, 3200T, 5000T, 500T, 5200Q, 5200T, 7000T, 9000T, and 9200T models. Specific version information is not listed in the data available.

Risk and Exploitability

With a CVSS score of 8.8, the vulnerability is categorized as high severity. The exploit probability is not quantified in EPSS, and the vulnerability is not currently listed in CISA’s KEV catalog. The attack requires an authenticated user with limited privileges; no public or unauthenticated vector is described, so an attacker must first obtain or brute‑force legitimate credentials to leverage the flaw.

Generated by OpenCVE AI on September 1, 2026 at 16:25 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Dell PowerStore security update referenced in the Dell advisory (2026‑330).
  • Restrict the number of users granted any level of privileged access to the array.
  • Continuously monitor system logs for any escalated privilege activity.

Generated by OpenCVE AI on September 1, 2026 at 16:25 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell powerstore 1000t
Dell powerstore 1200t
Dell powerstore 3000t
Dell powerstore 3200q
Dell powerstore 3200t
Dell powerstore 5000t
Dell powerstore 500t
Dell powerstore 5200q
Dell powerstore 5200t
Dell powerstore 7000t
Dell powerstore 9000t
Dell powerstore 9200t
Vendors & Products Dell
Dell powerstore 1000t
Dell powerstore 1200t
Dell powerstore 3000t
Dell powerstore 3200q
Dell powerstore 3200t
Dell powerstore 5000t
Dell powerstore 500t
Dell powerstore 5200q
Dell powerstore 5200t
Dell powerstore 7000t
Dell powerstore 9000t
Dell powerstore 9200t
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 01 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Description Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges.
Weaknesses CWE-693
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Dell Powerstore 1000t Powerstore 1200t Powerstore 3000t Powerstore 3200q Powerstore 3200t Powerstore 5000t Powerstore 500t Powerstore 5200q Powerstore 5200t Powerstore 7000t Powerstore 9000t Powerstore 9200t
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-09-02T03:55:47.078Z

Reserved: 2026-08-25T12:04:33.629Z

Link: CVE-2026-79686

cve-icon Vulnrichment

Updated: 2026-09-01T14:58:50.485Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-01T15:17:29.567

Modified: 2026-09-02T04:18:02.390

Link: CVE-2026-79686

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-01T17:30:17Z

Weaknesses
  • CWE-693

    Protection Mechanism Failure