CVE-2026-26360Disclosure(dell / unisphere_for_powermax)

LOWCVSS 8.1 · HIGH

Signal is active with 5 mentions in latest observed window

Immediate actions

  • Patch dell unisphere_for_powermax systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability to delete arbitrary files.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-73

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • unisphere_for_powermax

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 5 classified signals
  • 5 total mentions across 1 day

Affected systems

Vendors
Products
unisphere_for_powermax

Deep dive

Activity timeline5 mentions / 1d
01345Mentions · 2026-02-19: 5Patch / Workaround · 2026-02-19: 1Technical Details · 2026-02-19: 502-19
Signal classification1 categories
Disclosure
5100.0%
Referenced assets5 URLs
Full discourse5 posts
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-26360 - High Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could potentially exploit this vu... https://www.thehackerwire.com/vulnerability/CVE-2026-26360/ https://t.co/DK1AR9esYi

    Post summary

    The post announces a high‑severity External Control of File Name or Path vulnerability (CVE‑2026‑26360) affecting Dell Unisphere for PowerMax 10.2, without providing PoC, exploit code, or patch details.

    0000045
    112 followersView on X
  • CVETodo@CveTodo
    Disclosure

    **CVE-2026-26360** pertains to a security flaw in **Dell Unisphere for PowerMax (version 10.2)**, classified as an **External Control of File Name or Path** vulnerability. This flaw allows an attacker with **low privileges and remote access** to manipulate file operations, specifically to **delete arbitrary files** on the affected system. #Cybersecurity #CVE #HighSeverity #SecurityAlert #RemoteCodeExecution https://cvetodo.com/cve/CVE-2026-26360

    Post summary

    Dell Unisphere for PowerMax 10.2 has a CVE‑2026‑26360 flaw that allows attackers with low privileges and remote access to delete arbitrary files via external control of file name or path.

    0000024
    20 followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Disclosure

    🚨 HIGH severity alert: Dell Unisphere for PowerMax v10.2 is vulnerable to remote file deletion via CVE-2026-26360. Low-priv attackers can disrupt critical storage ops. Restrict access & monitor now! 🔒 https://radar.offseq.com/threat/cve-2026-26360-cwe-73-external-control-of-fi... https://t.co/pNDtsFLTk8

    Post summary

    An alert warns that Dell Unisphere for PowerMax v10.2 suffers a high‑severity CVE‑2026‑26360 vulnerability allowing remote file deletion; no PoC, exploit, patch, or active exploitation details are provided.

    0000040
    265 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-26360 Dell Unisphere for PowerMax, version(s) 10.2, contain(s) an External Control of File Name or Path vulnerability. A low privileged attacker with remote access could po… https://www.cve.org/CVERecord?id=CVE-2026-26360

    Post summary

    Dell Unisphere for PowerMax 10.2 is disclosed to have an External Control of File Name or Path vulnerability that could be exploited by low‑privileged remote attackers.

    0000061
    56.4K followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Disclosure

    ⚠️ HIGH severity alert: Dell Unisphere for PowerMax 10.2 has a vulnerability (CVE-2026-26360) allowing remote attackers to delete files. Low privileged access is enough! Patch when available. https://radar.offseq.com/threat/cve-2026-26360-cwe-73-external-control-of-file-nam-58... https://t.co/IJAK2msu8u

    Post summary

    The text announces a high‑severity CVE‑2026‑26360 in Dell Unisphere for PowerMax 10.2, noting that remote attackers can delete files with low privileges and advising users to apply a patch when available.

    0000025
    265 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appdellunisphere_for_powermax---
Appdellunisphere_for_powermax---

Explore more