Dell PowerScale OneFS 9.12.0.1: Insufficient Logging CVE202632803
CVE-2026-32803 Published on May 8, 2026
Dell PowerScale OneFS versions 9.5.0.0 through 9.5.1.6, 9.6.0.0 through 9.7.1.13, 9.8.0.0 through 9.10.1.5 and 9.11.0.0 through 9.12.0.1 contains an Insufficient Logging vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information tampering.
Vulnerability Analysis
CVE-2026-32803 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality, with no impact on integrity, and no impact on availability.
Weakness Type
Insufficient Logging
When a security-critical event occurs, the software either does not record the event or omits important details about the event when logging it. When security-critical events are not logged properly, such as a failed login attempt, this can make malicious behavior more difficult to detect and may hinder forensic analysis after an attack succeeds.
Products Associated with CVE-2026-32803
Want to know whenever a new CVE is published for Dell Powerscale Onefs? stack.watch will email you.
Affected Versions
Dell PowerScale OneFS:- Before 9.5.1.7 or later is affected.
- Before 9.7.1.14 or later is affected.
- Before 9.10.1.6 or later is affected.
- Before 9.13.0.0 or later is affected.