ZeroHour

CVE-2026-79683

large

Arbitrary File Write by Low-Privilege Users in Dell PowerStore

CVSS 3.1
8.8 high
EPSS
<1%p26
Published
()
Modified
AI analysis

Dell PowerStore contains a Protection Mechanism Failure (CWE-693) in which the array fails to constrain where authenticated users may write files. An authenticated user with limited privileges can trigger the flaw over the network, without user interaction, by writing content through a path that is not properly validated. Successful exploitation lets the attacker place attacker-controlled content at arbitrary filesystem paths, and the CVSS scoring (high confidentiality, integrity, and availability impact) indicates this could tamper with critical system files and meaningfully disrupt or compromise the appliance. Organizations running Dell PowerStore storage arrays are affected; the specific affected and fixed version ranges are not included in the data available here and must be taken from Dell's security advisory. There is no known exploitation: no public proof-of-concept exists, the flaw is not in CISA KEV, and EPSS estimates only a 0.3% chance of exploitation within 30 days.

What to do: Check Dell's security advisory for CVE-2026-79683 and upgrade PowerStore to the fixed release it specifies, since affected version ranges are not included in the data available here. Until patched, restrict PowerStore Manager (UI/API) access to trusted management networks and review which low-privilege accounts hold authenticated access. No public PoC or in-the-wild exploitation is known, so applying the vendor fix and monitoring Dell's guidance should be sufficient for most defenders.

Affected
Dell PowerStore
Estimated exposure
largetens of thousands of deployed PowerStore arrays (five-figure installed base); only a subset are network-exposed to low-privilege users — Dell publicly reported over $1 billion in PowerStore sales within roughly the first year after its 2020 launch, which at typical midrange array pricing implies a five-figure installed base of arrays worldwide, though most sit on internal…

Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.

Description

Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to write attacker-controlled content to arbitrary filesystem paths.

Weakness
CWE-693
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.