6.4
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Description
Dell SmartFabric Storage Software, versions prior to 1.4.5, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Filesystem access for attacker.
Basic Information
ID
CVE-2026-35070
Source
dell
Published
May 20, 2026 at 09:23
Affected Product
Vendor
Dell
Product
SmartFabric Storage Software
Affected Versions
Dell SmartFabric Storage Software 0