Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 166 respecto a la semana anterior
Críticas / altas1379▲ 45 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)266▼ 260 respecto a la semana anterior
24 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (10) | 0.29% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access. | |
| Analizada | Alta (8.8) | 0.75% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains a Command Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary commands with root privileges. | |
| Analizada | Alta (8.8) | 0.75% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains an OS Command Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary commands with root privileges. | |
| Analizada | Alta (8.8) | 0.49% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges. | |
| Analizada | Media (6.5) | 0.38% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains an Argument Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to gain unauthorized access to sensitive sensitive system information. | |
| Analizada | Alta (8.8) | 0.18% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains an Inclusion of Functionality from Untrusted Control Sphere vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary code with root privileges.. | |
| Analizada | Alta (8.8) | 0.49% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to bypass access restrictions and gain escalated privileges. | |
| Analizada | Alta (8.8) | 0.26% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains a Code Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary code with root privileges. | |
| Analizada | Alta (8.8) | 0.75% | — | Dell Powerstoreos | 1/9/2026 | 2/10/2026 | Dell PowerStore contains an OS Command Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary commands with root privileges. | |
| Analizada | Alta (8.8) | 0.49% | — | Dell Powerstoreos | 1/9/2026 | 30/9/2026 | Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to write attacker-controlled content to arbitrary filesystem paths. | |
| Analizada | Alta (8.8) | 0.53% | — | Dell Powerstoreos | 1/9/2026 | 30/9/2026 | Dell PowerStore contains an Authentication Bypass by Spoofing vulnerability. An authenticated attacker could potentially exploit this vulnerability to escalate privileges to Administrator. | |
| Analizada | Alta (8.8) | 0.42% | — | Dell Powerstoreos | 1/9/2026 | 30/9/2026 | Dell PowerStore contains an Incorrect Authorization vulnerability. An authenticated attacker with low privileges could potentially exploit this vulnerability to invoke administrator-only operations, leading to privilege escalation. | |
| Analizada | Crítica (9.8) | 0.63% | — | Dell Powerstoreos | 31/8/2026 | 1/10/2026 | Dell PowerStore contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with network access to the restricted management interface could potentially exploit this vulnerability to read internal system information from the appliance filesystem. This is a Critical vulnerability… | |
| Analizada | Alta (7.1) | 0.16% | — | Dell Powerstoreos | 1/4/2026 | 11/9/2026 | PowerStore, contains a Path Traversal vulnerability in the Service user. A low privileged attacker with local access could potentially exploit this vulnerability, leading to modification of arbitrary system files. | |
| Analizada | Media (6.5) | 0.31% | — | Dell Powerstoreos | 28/5/2025 | 11/9/2026 | Dell PowerStore, version(s) 4.0.0.0, contain(s) an Use of Hard-coded Credentials vulnerability in the PowerStore image file. A low privileged attacker with remote access, with the knowledge of the hard-coded credentials, could potentially exploit this vulnerability to gain unauthorized access based on the hardcoded… | |
| Analizada | Alta (7.1) | 0.27% | — | Dell Powerstoreos | 19/12/2024 | 11/9/2026 | Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to modification of arbitrary system files. | |
| Modificada | Media (4.9) | 0.54% | — | Dell Powerstoreos | 21/7/2023 | 17/6/2026 | Dell PowerStore versions prior to 3.5.0.1 contain an insertion of sensitive information into log file vulnerability. A high privileged malicious user could potentially exploit this vulnerability, leading to sensitive information disclosure. | |
| Modificada | Crítica (9.8) | 0.68% | — | Dell Powerstoreos | 21/10/2022 | 17/6/2026 | Dell PowerStore versions 2.1.0.x contain an Authentication bypass vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability under specific configuration. An attacker would gain unauthorized access upon successful exploit. | |
| Modificada | Crítica (9.8) | 2.0% | — | Dell Powerstoreos | 2/6/2022 | 17/6/2026 | Dell PowerStore versions 2.0.0.x, 2.0.1.x and 2.1.0.x contains an open port vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to information disclosure and arbitrary code execution. | |
| Modificada | Alta (7.8) | 0.40% | — | Dell Powerstoreos | 2/6/2022 | 17/6/2026 | Dell EMC PowerStore versions 2.0.0.x, 2.0.1.x, and 2.1.0.x are vulnerable to a command injection flaw. An authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application.… | |
| Modificada | Alta (8) | 0.60% | — | Dell Powerstoreos | 2/6/2022 | 17/6/2026 | PowerStore SW v2.1.1.0 supports the option to export data to either a CSV or an XLSX file. The data is taken as is, without any validation or sanitization. It allows a malicious, authenticated user to inject payloads that might get interpreted as formulas by the corresponding spreadsheet application that is being used… | |
| Modificada | Media (5.5) | 0.47% | — | Dell Powerstoreos | 2/6/2022 | 17/6/2026 | Dell PowerStore Versions before v2.1.1.0. contains a Stored Cross-Site Scripting vulnerability. A high privileged network attacker could potentially exploit this vulnerability, leading to the storage of malicious HTML or JavaScript codes in a trusted application data store. When a victim user accesses the data store… | |
| Modificada | Alta (7.8) | 0.20% | — | Dell Powerstoreos | 2/6/2022 | 17/6/2026 | PowerStore contains Plain-Text Password Storage Vulnerability in PowerStore X & T environments running versions 2.0.0.x and 2.0.1.x A locally authenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed… | |
| Modificada | Alta (7.5) | 1.3% | — | Dell Powerstoreos | 2/6/2022 | 17/6/2026 | Dell PowerStore contains an Uncontrolled Resource Consumption Vulnerability in PowerStore User Interface. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the Denial of Service. |