Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, leading to information exposure of storage backend administrator credentials.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 06 Oct 2026 15:30:00 +0000

Type Values Removed Values Added
Description Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, leading to information exposure of storage backend administrator credentials.
Weaknesses CWE-295
References
Metrics cvssV3_1

{'score': 8.2, 'vector': 'CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:L'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-10-06T15:06:09.410Z

Reserved: 2026-07-29T11:04:32.678Z

Link: CVE-2026-67270

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-06T16:17:09.580

Modified: 2026-10-06T16:17:09.580

Link: CVE-2026-67270

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses