Improper Neutralization in Dell Container Storage Modules
CVE-2026-67273
9.6CRITICAL
What is CVE-2026-67273?
Dell Container Storage Modules prior to version 1.18.0 exhibit a vulnerability related to the improper neutralization of special elements in a template engine. This flaw could be exploited by a low privileged attacker with remote access, potentially allowing them to escalate their privileges within the system. Organizations utilizing these modules should ensure they're updated to avoid such security risks.
Affected Version(s)
Container Storage Modules 0 < 1.18.0 or later
References
CVSS V3.1
Score:
9.6
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Dell would like to thank rudra_16 for reporting this issue.