CVE-2026-40633: High severity Dell PowerScale OneFS vulnerability
Dell PowerScale OneFS versions 9.5.0.0 through 9.10.1.7, versions 9.11.0.0 through 9.13.0.2 contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Mitigate information disclosure by restricting local access on Dell PowerScale OneFS systems so low-privileged users cannot access or read sensitive log files.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-40633?
The severity of CVE-2026-40633 is rated as high with a CVSS score of 7.8.
How do I fix CVE-2026-40633?
To fix CVE-2026-40633, upgrade to a patched version of Dell PowerScale OneFS that addresses the vulnerability.
What type of vulnerability is CVE-2026-40633?
CVE-2026-40633 is an Insertion of Sensitive Information into Log File vulnerability.
Who is affected by CVE-2026-40633?
CVE-2026-40633 affects Dell PowerScale OneFS versions 9.5.0.0 through 9.10.1.7 and 9.11.0.0 through 9.13.0.2.
What could a low privileged attacker do with CVE-2026-40633?
A low privileged attacker with local access could exploit CVE-2026-40633 to disclose sensitive information.