CVE-2026-21422

Dell PowerScale OneFS, versions 9.10.0.0 through 9.13.1.0, contains an external control of system or configuration setting vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to protection mechanism bypass.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*

History

30 Apr 2026, 09:16

Type Values Removed Values Added
Summary
  • (es) Dell PowerScale OneFS, versiones 9.10.0.0 a 9.10.1.5 y versiones 9.11.0.0 a 9.12.0.1, contiene una vulnerabilidad de control externo de la configuración o del sistema. Un atacante con altos privilegios y acceso local podría potencialmente explotar esta vulnerabilidad, lo que podría llevar a la elusión del mecanismo de protección.
Summary (en) Dell PowerScale OneFS, versions 9.10.0.0 through 9.10.1.5 and versions 9.11.0.0 through 9.12.0.1, contains an external control of system or configuration setting vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to protection mechanism bypass. (en) Dell PowerScale OneFS, versions 9.10.0.0 through 9.13.1.0, contains an external control of system or configuration setting vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to protection mechanism bypass.

04 Mar 2026, 20:49

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-sg/000432452/dsa-2026-038-security-update-for-dell-powerscale-onefs-multiple-vulnerabilities - () https://www.dell.com/support/kbdoc/en-sg/000432452/dsa-2026-038-security-update-for-dell-powerscale-onefs-multiple-vulnerabilities - Vendor Advisory
CPE cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*
First Time Dell
Dell powerscale Onefs

04 Mar 2026, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-04 13:15

Updated : 2026-04-30 09:16


NVD link : CVE-2026-21422

Mitre link : CVE-2026-21422

CVE.ORG link : CVE-2026-21422


JSON object : View

Products Affected

dell

  • powerscale_onefs
CWE
CWE-15

External Control of System or Configuration Setting