CVE-2026-32657
CVSS Score
7.3
EPSS Score
0.0%
EPSS Percentile
0th
Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRail Version 8.0.322, Dell PowerMax Version 10.3.0, Dell Unity Version 5.4, Dell PowerFlex Manager Version 4.5.4, Dell PowerFlex Intelligent Catalog Versions 46.377.00 and 46.382.00 and Dell PowerFlex Rack version 4.5.4 and prior versions, contain(s) an UNIX Symbolic Link (Symlink) Following vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
| CWE | CWE-61 |
| Vendor | dell |
| Product | appsync |
| Published | Aug 18, 2026 |
| Last Updated | Aug 18, 2026 |
Stay Ahead of the Next One
Get instant alerts for dell appsync
Be the first to know when new high vulnerabilities affecting dell appsync are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected Versions
Dell / AppSync
0 < 4.6.0.4 or later
Dell / Metro Node
0 < 4.6.0.4 or later
Dell / UCC Edge
0 < 3.0.2 or later
Dell / VxRail
0 < 8.0.330 or later
Dell / PowerMax
0 < 10.3.1.0 Patch 11248 or later
Dell / Unity
0 < 5.5.2 or later
Dell / PowerFlex Manager
0 < 4.5.5 or later
Dell / PowerFlex Intelligent Catalog
0 < 48.383.00 or later
Dell / PowerFlex Intelligent Catalog
0 < 48.378.00 or later
Dell / PowerFlex Rack
0 < 4.5.5 or later