CVE-2026-54470: XEE
Published Jul 10, 2026
·Updated
Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
Affected Software
2 affected components
Dell Unisphere for PowerMax<=10.3.0.5
Dell Unisphere for PowerMax<10.3.0.7
Event History
Jul 10, 2026
CVE Published
via MITRE·12:20 PM
Data Sourced
via MITRE·12:20 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-54470?
The severity of CVE-2026-54470 is rated as medium with a score of 5.3.
2
How do I fix CVE-2026-54470?
To fix CVE-2026-54470, update Dell Unisphere for PowerMax to version 10.3.0.6 or later.
3
What type of vulnerability is CVE-2026-54470?
CVE-2026-54470 is categorized as an Improper Restriction of XML External Entity Reference vulnerability.
4
Who is affected by CVE-2026-54470?
CVE-2026-54470 affects users of Dell Unisphere for PowerMax versions 10.3.0.5 and prior.
5
What could an attacker do with CVE-2026-54470?
An attacker could potentially exploit CVE-2026-54470 to gain unauthorized access due to remote execution capabilities.