CVE-2026-56086

EUVD-2026-42240
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an Incorrect Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 24.33%
Affected Products (NVD)
VendorProductVersion
delldata_domain_operating_system
7.7.1.0 ≤
𝑥
< 7.13.1.80
delldata_domain_operating_system
7.14.0.0 ≤
𝑥
< 8.3.1.40
delldata_domain_operating_system
8.4.0.0 ≤
𝑥
< 8.6.1.20
𝑥
= Vulnerable software versions