PT-2026-33795 · Dell · Dell Powerprotect Data Domain

Published

2026-04-14

·

Updated

2026-04-21

·

CVE-2026-24506

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Dell PowerProtect Data Domain versions 7.7.1.0 through 8.6 Dell PowerProtect Data Domain versions 8.3.1.0 through 8.3.1.20 Dell PowerProtect Data Domain versions 7.13.1.0 through 7.13.1.60
Description An OS command injection issue exists where a high privileged attacker with remote access could execute arbitrary commands as root.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-06532
CVE-2026-24506

Affected Products

Dell Powerprotect Data Domain