Dell TechnologiesCVE-2026-46460
Dell Technologies PowerScale OneFS: improper authorization
Low3.5CVE-2026-46460 · Published Sep 9, 2026 · updated Sep 16, 2026
Dell PowerScale OneFS, versions 9.5.0.0 through 9.7.1.15, versions 9.8.0.0 through 9.13.1.0, and versions prior to 9.15.0.0, contain an Incorrect Authorization vulnerability. A low privileged adjacent network attacker could potentially exploit this vulnerability, leading to unauthorized modification of system logs.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| PowerScale OneFS Product | < 9.7.1.16 or later | 9.7.1.16 or later |
| < 9.13.1.1 or later | 9.13.1.1 or later | |
| < 9.15.0.0 or later | 9.15.0.0 or later |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-863
More Dell Technologies advisories
All Dell Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 9 | Dell Technologies PowerScale OneFS: command injection | Medium6.7 | 9.13.1.1 or later+1 more |
| Sep 9 | Dell Technologies PowerScale OneFS: denial of service | Medium5.4 | 9.13.1.1 or later+1 more |
| Sep 9 | Dell Technologies iDRAC10: command injection | High7.2 | iDRAC9 7.30.10.50 or later+2 more |
| Sep 9 | Dell Technologies Secure Connect Gateway 5.0: command injection | Medium5.3 | - Application 5.36.00.00 or later+1 more |
| Sep 9 | Dell Technologies Secure Connect Gateway 5.0: excessive privileges | Low3.4 | - Application 5.36.00.00 or later+1 more |
| Sep 9 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0... | Low3.4 | - Application 5.36.00.00 or later+1 more |