VYPR
Medium severity5.7NVD Advisory· Published Jun 17, 2026· Updated Jun 25, 2026

CVE-2026-35069

CVE-2026-35069

Description

Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to Script injection.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:dell:powerflex_manager:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:dell:powerflex_manager:*:*:*:*:*:*:*:*range: <4.5.5.2
    • (no CPE)range: <5.1.0.1

Patches

Vulnerability mechanics

References

1

News mentions

1