CVE-2026-76111
8.8Dell · PowerStore T
Dell PowerStore appliances contain an incorrect authorization vulnerability that allows authenticated users with low privileges to perform unauthorized administrator operations and escalate privileges.
Executive summary
A high-severity authorization flaw in Dell PowerStore allows low-privileged authenticated users to escalate privileges to administrator status.
Vulnerability
The vulnerability is an incorrect authorization flaw (CWE-863) where the system fails to properly validate the permission levels of authenticated users. An attacker with low-level access can successfully invoke functions reserved for administrative users, resulting in full unauthorized access to system management operations.
Business impact
Successful exploitation allows an attacker to gain administrative control over the storage appliance, which may lead to unauthorized data access, modification of storage configurations, or complete disruption of storage services. Given the CVSS score of 8.8, this vulnerability poses a significant risk to the integrity and availability of critical infrastructure, potentially leading to severe operational downtime or data compromise.
Remediation
Immediate Action: Update all affected Dell PowerStore T appliances to version 4.1.0.6-2771237 or later as specified in the Dell security advisory DSA-2026-330.
Proactive Monitoring: Review administrative access logs for unusual activity or unauthorized configuration changes performed by low-privileged service accounts.
Compensating Controls: Restrict management interface access to trusted network segments and enforce strict multi-factor authentication for all administrative and user sessions.
Exploitation status
Public Exploit Available: No (unknown)
Analyst recommendation
This vulnerability represents a significant security risk to the management layer of Dell PowerStore arrays. Administrators should prioritize the deployment of the vendor-provided patch to remediate the authorization logic flaw. Failure to address this update leaves the storage infrastructure vulnerable to internal threats and compromised accounts attempting to escalate privileges.