High severity7.1NVD Advisory· Published Oct 6, 2026
CVE-2026-70411
CVE-2026-70411
Description
Dell Container Storage Modules (CSM), versions prior to 1.18.0, contains a Missing Authentication for Critical Function vulnerability in the csm-authorization-tenant gRPC service (TenantService). An unauthenticated adjacent network attacker could potentially exploit this vulnerability, leading to unauthorized creation of tenant entities, cross-tenant role injection, and modification of storage access control flags.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <1.18.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.