Powerflex Manager
Vendor:
First CVE: Dec 10, 2024 · Active for 1 year
25
Total CVEs
More Total CVEs than 95% of tracked products
8.3
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Powerflex Manager over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 10, 2024
19 months ago
Most Recent CVE
Jul 10, 2026
14 days ago
CVE Severity & Scoring
Powerflex Manager25 CVEs
40%
52%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local5 (20.0%)
Network13 (52.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network7 (28.0%)
Attack Complexity
Low24 (96.0%)
High1 (4.0%)
Unknown0 (0.0%)
User Interaction
None24 (96.0%)
Unknown0 (0.0%)
Required1 (4.0%)
Privileges Required
Low12 (48.0%)
High2 (8.0%)
None11 (44.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (25 CVEs).
25 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-56688CRITICAL Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high pri | Jul 10, 2026 | 9.1 | 42 | NO | NO |
CVE-2026-56690HIGH Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged | Jul 10, 2026 | 8.5 | 38 | NO | NO |
CVE-2026-56689HIGH Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged | Jul 10, 2026 | 7.7 | 36 | NO | NO |
CVE-2026-35065HIGH Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with adjacent network acce | Jun 17, 2026 | 8.8 | 35 | NO | NO |
CVE-2026-32804HIGH Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent network access could potentially | Jun 17, 2026 | 8.1 | 33 | NO | NO |
CVE-2026-35069HIGH Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privile | Jun 17, 2026 | 8.0 | 31 | NO | NO |
CVE-2025-32750HIGH Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could pote | May 20, 2026 | 7.5 | 31 | NO | NO |
CVE-2026-49502HIGH Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent network access could potentially | Jun 17, 2026 | 8.1 | 30 | NO | NO |
CVE-2026-22283HIGH Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Inclusion of Functionality from Untrusted Control Sphere vulnerability. An unauthenticated attacker with remote a | Jun 17, 2026 | 7.5 | 30 | NO | NO |
CVE-2025-26483HIGH Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker could potentially exploit this vulnerability, leading to a ta | May 22, 2026 | 8.2 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (25 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (25 CVEs).
Media Mentions
Signals from CVEs in this product scope (25 CVEs).
Top CNAs Publishing CVEs For Powerflex Manager
Top CWEs
Versions
No cataloged versions.