Dell CSI Driver for PowerMax csireverseproxy Missing Auth <1.18.0
CVE-2026-63691 Published on October 6, 2026

Dell Container Storage Modules, versions prior to 1.18.0, contain(s) a Missing Authorization vulnerability in the Dell CSI Driver for PowerMax - csireverseproxy . An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Unauthorized access.

Vendor Advisory NVD

Vulnerability Analysis

Attack Vector:
ADJACENT_NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
CHANGED
Confidentiality Impact:
LOW
Integrity Impact:
NONE
Availability Impact:
LOW

Weakness Type

What is an AuthZ Vulnerability?

The software does not perform an authorization check when an actor attempts to access a resource or perform an action.

CVE-2026-63691 has been classified to as an AuthZ vulnerability or weakness.


Products Associated with CVE-2026-63691

Want to know whenever a new CVE is published for Dell Container Storage Modules? stack.watch will email you.

 

Affected Versions

Dell Container Storage Modules: