Status: UPDATED | Advisory ID: CVE-2026-79687
| CVE | CVE-2026-79687 |
| CVSS Score / Version | 9.0 (Critical) / CVSS v3.1 |
| Updated | 2026-10-02 |
| CVSS Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H |
| CVSS Prose | attack vector is network; attack complexity is high; privileges required is none; user interaction is none; scope is changed; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | see table below |
| Classified as | CWE-306 (Missing Authentication for Critical Function) |
| Vendor | Product | Affected Versions | Patch Status |
|---|---|---|---|
| dell | powerstoreos | ||
| dell | PowerStore 500T | ||
| dell | PowerStore 1000T | ||
| dell | PowerStore 1200T | ||
| dell | PowerStore 3000T | ||
| dell | PowerStore 3200Q | ||
| dell | PowerStore 3200T | ||
| dell | PowerStore 5000T | ||
| dell | PowerStore 5200Q | ||
| dell | PowerStore 5200T | ||
| dell | PowerStore 7000T | ||
| dell | PowerStore 9000T | ||
| dell | PowerStore 9200T |
| Subsystems | General OT |
| Sectors | Multiple |
Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access. (NVD)
Monitor dell's web page for any future patch releases. See vendor advisory link below.