VDB

GHSA-f22f-m2ph-vfcc

GHSA-f22f-m2ph-vfcc PUBLISHED CVSS 6.699999809265137 MEDIUM

Dell PowerProtect Data Domain, versions 8.5 through 8.6 contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS command injection vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges.

Risk Scores

CVSS v3.1
6.699999809265137
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Timeline

  • Apr 20, 2026 CVE Published
  • Apr 21, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›