Dell PowerStore Argument Injection: LimitedPrivileged User Access Escalation
CVE-2026-79685 Published on September 1, 2026

Dell PowerStore contains an Argument Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to gain unauthorized access to sensitive sensitive system information.

Vendor Advisory NVD

Vulnerability Analysis

CVE-2026-79685 can be exploited with network access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality, with no impact on integrity and availability.

Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
LOW
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
NONE
Availability Impact:
NONE

Weakness Type

What is an Argument Injection Vulnerability?

The software constructs a string for a command to executed by a separate component in another control sphere, but it does not properly delimit the intended arguments, options, or switches within that command string.

CVE-2026-79685 has been classified to as an Argument Injection vulnerability or weakness.


Affected Versions

Dell PowerStore 500T: Dell PowerStore 1000T: Dell PowerStore 1200T: Dell PowerStore 3000T: Dell PowerStore 3200Q: Dell PowerStore 3200T: Dell PowerStore 5000T: Dell PowerStore 5200Q: Dell PowerStore 5200T: Dell PowerStore 7000T: Dell PowerStore 9000T: Dell PowerStore 9200T: Dell PowerStore 500T: Dell PowerStore 1000T: Dell PowerStore 1200T: Dell PowerStore 3000T: Dell PowerStore 3200Q: Dell PowerStore 3200T: Dell PowerStore 5000T: Dell PowerStore 5200Q: Dell PowerStore 5200T: Dell PowerStore 7000T: Dell PowerStore 9000T: Dell PowerStore 9200T: