CVE-2026-28265

PowerStore, contains a Path Traversal vulnerability in the Service user. A low privileged attacker with local access could potentially exploit this vulnerability, leading to modification of arbitrary system files.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:powerstoreos:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:powerstore_1000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_1200t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_3000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_3200q:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_3200t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_5000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_500t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_5200q:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_5200t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_7000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_9000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_9200t:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-01 08:16

Updated : 2026-09-11 13:30


NVD link : CVE-2026-28265

Mitre link : CVE-2026-28265

CVE.ORG link : CVE-2026-28265


JSON object : View

Products Affected

dell

  • powerstoreos
  • powerstore_500t
  • powerstore_5200q
  • powerstore_3000t
  • powerstore_5200t
  • powerstore_5000t
  • powerstore_7000t
  • powerstore_9000t
  • powerstore_1000t
  • powerstore_3200q
  • powerstore_3200t
  • powerstore_9200t
  • powerstore_1200t
CWE
CWE-35

Path Traversal: '.../...//'

CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')