Description
Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerability. A local authenticated malicious user with monitor role may exploit this vulnerability to perform unauthorized actions.
Scores
CVSS v3
8.1
EPSS
0.0014
EPSS Percentile
34.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Details
CWE
CWE-669
CWE-602
Status
published
Products (5)
dell/powermax_os
5978
dell/solutions_enabler
< 9.1.0.15
dell/solutions_enabler_virtual_appliance
< 9.1.0.15
dell/unisphere_for_powermax
< 9.1.0.26
dell/unisphere_for_powermax_virtual_appliance
< 9.1.0.26
Published
Apr 30, 2021
Tracked Since
Feb 18, 2026