PT-2026-20781 · Dell · Dell Powerprotect Data Manager
Published
2026-02-19
·
Updated
2026-02-19
·
CVE-2026-22269
CVSS v3.1
4.7
Medium
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Dell PowerProtect Data Manager versions prior to 19.22
Description
Dell PowerProtect Data Manager has an issue with improper verification of the source of a communication channel within the REST API. A remote attacker with high privileges could bypass protection mechanisms. The affected API endpoint is not specified.
Recommendations
Update to version 19.22 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Powerprotect Data Manager