CVE-2026-56690: SQL Injection
Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure, Information exposure, and Unauthorized access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell PowerFlex Managerto a version that resolves this vulnerability.Fixed in 5.1.0.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-56690?
The severity of CVE-2026-56690 is high with a score of 8.5.
How do I fix CVE-2026-56690?
To fix CVE-2026-56690, upgrade Dell PowerFlex Manager to version 5.1.0.1 or later.
What kind of vulnerability is CVE-2026-56690?
CVE-2026-56690 is an SQL Injection vulnerability.
What can an attacker achieve by exploiting CVE-2026-56690?
An attacker can potentially achieve information disclosure by exploiting CVE-2026-56690.
Who is affected by CVE-2026-56690?
Users of Dell PowerFlex Manager versions prior to 5.1.0.1 are affected by CVE-2026-56690.