Code Injection Vulnerability in Dell PowerStore
CVE-2026-58572

8.8HIGH

Key Information:

Vendor

Dell

Vendor
CVE Published:
1 September 2026

What is CVE-2026-58572?

Dell PowerStore contains a code injection vulnerability that allows an authenticated user with limited privileges to execute arbitrary code with root access. This flaw can potentially lead to unauthorized control over the system, making it imperative for affected users to apply the necessary security updates as recommended by Dell. Users are advised to review their security configurations and stay informed about updates to mitigate risks associated with this vulnerability.

Affected Version(s)

PowerStore 1000T 0 < 4.1.0.6-2771237 or later

PowerStore 1000T 0 < 4.3.1.2-2771239 or later

PowerStore 1200T 0 < 4.1.0.6-2771237 or later

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.