HIGH✓ PATCH🇵🇱 Wersja polska

CVE-2026-53482

CVSS 7.5v3.1pub. 2026-07-08upd. 2026-07-09

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an Integer overflow or wraparound vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
  • Dell Data Domain Operating System

    OS
    Dell
    7.7.1.0 – 7.13.1.80 (excl.)7.14.0.0 – 8.3.1.40 (excl.)8.4.0.0 – 8.6.1.20 (excl.)8.7.0.0 – 8.8.0.0 (excl.)
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
Auth BypassDoS
CWE
References

Related vulnerabilities

CVE-2026-53483CRITICAL9.8PL ✓same product

Obejście uwierzytelniania w Dell PowerProtect Data Domain (Auth Bypass)

CVE-2026-53481CRITICAL9.8PL ✓same product

Path Traversal w Dell PowerProtect Data Domain umożliwia przejęcie systemu

CVE-2025-36594CRITICAL9.8PL ✓same product

Authentication Bypass by Spoofing w Dell PowerProtect Data Domain DD OS

CVE-2026-41122HIGH7.1PL ✓same product

Stored XSS w Dell PowerProtect Data Domain — kradzież sesji

CVE-2026-56086HIGH8.8PL ✓same product

Nieprawidłowa autoryzacja w Dell PowerProtect Data Domain