VDB
GHSA-f22f-m2ph-vfcc
GHSA-f22f-m2ph-vfcc
PUBLISHED
CVSS 6.699999809265137 MEDIUM
Dell PowerProtect Data Domain, versions 8.5 through 8.6 contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS command injection vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges.
Risk Scores
CVSS v3.1
6.699999809265137
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Timeline
- Apr 20, 2026 CVE Published
- Apr 21, 2026 Security Advisory