Dell CSI Driver for PowerMax csireverseproxy Missing Auth <1.18.0
CVE-2026-63691 Published on October 6, 2026
Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authorization vulnerability in the Dell CSI Driver for PowerMax - csireverseproxy . An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Unauthorized access.
Vulnerability Analysis
Attack Vector:
ADJACENT_NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
CHANGED
Confidentiality Impact:
LOW
Integrity Impact:
NONE
Availability Impact:
LOW
Weakness Type
What is an AuthZ Vulnerability?
The software does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVE-2026-63691 has been classified to as an AuthZ vulnerability or weakness.
Products Associated with CVE-2026-63691
Want to know whenever a new CVE is published for Dell Container Storage Modules? stack.watch will email you.
Affected Versions
Dell Container Storage Modules:- Before 1.18.0 or later is affected.