


Perceptive Security
SOC/SIEM Consultancy

Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially ex…
Published:
1 September 2026 at 00:00:00
Alert date:
1 September 2026 at 19:14:40
Source:
nvd.nist.gov
Database & Storage, Identity & Access, Critical Infrastructure
CVE-2026-79687 affects Dell PowerStore SDNAS, which contains a Missing Authentication for Critical Function vulnerability. An unauthenticated remote attacker can potentially exploit this flaw to gain unauthorized access to the filesystem. The vulnerability requires no prior authentication, making it especially dangerous for exposed systems. Dell has issued a security advisory (DSA-2026-330) addressing this and multiple other vulnerabilities in PowerStore T. The issue highlights risks associated with missing access controls on critical storage management functions. Remote exploitation could lead to sensitive data exposure or manipulation at the filesystem level. Organizations using Dell PowerStore should apply the recommended security updates immediately.
Technical details
Mitigation steps:
Affected products:
Dell PowerStore SDNAS
Dell PowerStore T
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-79687
https://www.dell.com/support/kbdoc/en-us/000497829/dsa-2026-330-dell-powerstore-t-security-update-for-multiple-vulnerabilities
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
