CVE-2026-58574: Critical severity Dell PowerStore vulnerability
Dell PowerStore contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with network access to the restricted management interface could potentially exploit this vulnerability to read internal system information from the appliance filesystem. This is a Critical vulnerability as it could expose sensitive information and credentials which allow full administrative access to the array.
Affected Software
Event History
Frequently Asked Questions
Which systems are exposed to this issue?
Dell PowerStore appliances are exposed if an attacker can reach the restricted management interface over the network. The issue does not require authentication or user interaction.
What could an attacker obtain through exploitation?
An attacker could read internal system information from the appliance filesystem. The exposed information may include sensitive data and credentials that allow full administrative access to the array.
What access does an attacker need to exploit this vulnerability?
The attacker needs network access to the restricted management interface. No valid credentials or prior privileges are required.