CVE-2026-67262 PUBLISHED

Assigner: dell
Reserved: 29.07.2026 Published: 18.08.2026 Updated: 19.08.2026

Dell PowerStore contains a Missing Authorization vulnerability. An attacker with access to a mapped host could exploit this vulnerability to read from or write to LUNs that the host is not authorized to access, bypassing per-initiator LUN access controls and leading to protection mechanism bypass.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Score: 8.1

Product Status

Vendor Dell
Product PowerStore 500T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 1000T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 1200T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 3000T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 3200Q
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 3200T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 5000T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 5200Q
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 5200T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 7000T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 9000T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)
Vendor Dell
Product PowerStore 9200T
Versions Default: unaffected
  • affected from 0 to 5.0.0.2-2761110 or later (excl.)

References

Problem Types

  • CWE-862: Missing Authorization CWE