Dell TechnologiesCVE-2026-58574
Dell Technologies PowerStore: missing authentication
Critical9.8CVE-2026-58574 · Published Aug 31, 2026 · updated Sep 1, 2026
Dell PowerStore contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with network access to the restricted management interface could potentially exploit this vulnerability to read internal system information from the appliance filesystem. This is a Critical vulnerability as it could expose sensitive information and credentials which allow full administrative access to the array.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| PowerStore 1000T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 1200T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 3000T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 3200Q Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 3200T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 5000T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 500T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 5200Q Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 5200T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 7000T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 9000T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
| PowerStore 9200T Product | < 4.1.0.6-2771237 or later | 4.1.0.6-2771237 or later |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-306
More Dell Technologies advisories
All Dell Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 1 | Dell Technologies PowerStore: protection mechanism failure | High8.8 | 500T 4.1.0.6-2771237 or later+2 more |
| Sep 1 | Dell Technologies PowerStore: code injection | High8.8 | 500T 4.1.0.6-2771237 or later+2 more |
| Sep 1 | Dell Technologies PowerStore: command injection | High8.8 | 500T 4.1.0.6-2771237 or later+2 more |
| Sep 1 | Dell Technologies PowerStore: protection mechanism failure | High8.8 | 500T 4.1.0.6-2771237 or later+2 more |
| Sep 1 | Dell Technologies PowerStore: authentication bypass | High8.8 | 500T 4.1.0.6-2771237 or later+2 more |
| Sep 1 | Dell Technologies PowerStore: improper authorization | High8.8 | 500T 4.1.0.6-2771237 or later+2 more |