Vulnerability Details CVE-2026-35070
Dell SmartFabric Storage Software, versions prior to 1.4.5, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Filesystem access for attacker.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 2.6%
CVSS Severity
CVSS v3 Score 6.4
Products affected by CVE-2026-35070
-
cpe:2.3:a:dell:smartfabric_storage_software:1.0.0
-
cpe:2.3:a:dell:smartfabric_storage_software:1.4.0
-
cpe:2.3:a:dell:smartfabric_storage_software:1.4.1