Skip to content
Dell TechnologiesCVE-2026-32657

Dell AppSync Version 4.6.0.0

High7.3CVE-2026-32657 · Published Aug 18, 2026 · updated Aug 20, 2026

Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRail Version 8.0.322, Dell PowerMax Version 10.3.0, Dell Unity Version 5.4, Dell PowerFlex Manager Version 4.5.4, Dell PowerFlex Intelligent Catalog Versions 46.377.00 and 46.382.00 and Dell PowerFlex Rack version 4.5.4 and prior versions, contain(s) an UNIX Symbolic Link (Symlink) Following vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

Dell Technologies advisory

Affected versions

PackageAffectedFixed in
AppSync
Product
< 4.6.0.4 or later4.6.0.4 or later
Metro Node
Product
< 4.6.0.4 or later4.6.0.4 or later
PowerFlex Intelligent Catalog
Product
< 48.383.00 or later48.383.00 or later
< 48.378.00 or later48.378.00 or later
PowerFlex Manager
Product
< 4.5.5 or later4.5.5 or later
PowerFlex Rack
Product
< 4.5.5 or later4.5.5 or later
PowerMax
Product
< 10.3.1.0 Patch 11248 or later10.3.1.0 Patch 11248 or later
UCC Edge
Product
< 3.0.2 or later3.0.2 or later
Unity
Product
< 5.5.2 or later5.5.2 or later
VxRail
Product
< 8.0.330 or later8.0.330 or later
Details and references

More Dell Technologies advisories

All Dell Technologies
Advisory
Dell Alienware Command Center
High7.3Aug 18
Dell Technologies Alienware Command Center (AWCC: denial of service
Medium6.0Aug 18
Dell Technologies PowerStore: missing authorization
High8.1Aug 18
Dell Technologies PowerStore: denial of service
High8.1Aug 18
Dell Technologies PowerStore: out-of-bounds write
Critical9.8Aug 18
Dell Technologies Watchdog Timer Driver: improper access control
High8.8Aug 18

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.