HIGH✓ PATCH🇬🇧 English

CVE-2026-79938

CVSS 7.6v3.1pub. 2026-08-26upd. 2026-09-01

Dell PowerProtect Cyber Recovery, versions prior to 20.3, contain an Improper Authentication vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.

oryginał EN
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L
  • Dell Powerprotect Cyber Recovery

    APP
    Dell
    < 20.3.0.0
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
Auth Bypass
CWE
Referencje

Powiązane podatności

CVE-2022-34372CRITICAL9.8PL ✓ten sam produkt

Dell PowerProtect Cyber Recovery — Authentication Bypass w Docker Registry API

CVE-2023-32465HIGH8.8ten sam produkt

Dell Power Protect Cyber Recovery, contains an Authentication Bypass vulnerability. An attacker could potenti...

CVE-2022-32481HIGH7.8ten sam produkt

Dell PowerProtect Cyber Recovery, versions prior to 19.11, contain a privilege escalation vulnerability on vir...

CVE-2026-49809MEDIUM6.5ten sam produkt

Dell PowerProtect Cyber Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Eleme...

CVE-2026-79939MEDIUM5.8ten sam produkt

Dell PowerProtect Cyber Recovery, versions Prior to 20.3, contain an UNIX Symbolic Link (Symlink) Following vu...