CVE-2026-76111: High severity Dell PowerStore vulnerability
Dell PowerStore contains an Incorrect Authorization vulnerability. An authenticated attacker with low privileges could potentially exploit this vulnerability to invoke administrator-only operations, leading to privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
An attacker must already be authenticated to Dell PowerStore with low privileges. No user interaction is required.
What could successful exploitation allow?
Successful exploitation could allow a low-privileged authenticated attacker to invoke administrator-only operations, resulting in privilege escalation. The reported impact includes high confidentiality, integrity, and availability impact.
Is this remotely exploitable?
The vulnerability is rated with network attack vector and low attack complexity, indicating it may be exploitable over the network by an authenticated low-privileged attacker.