CVE-2026-35154
בינונית 6.7
תיאור (מקור, אנגלית)
Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0, LTS2025 release versions 8.3.1.0 through 8.3.1.20, and LTS2024 release versions 7.13.1.0 through 7.13.1.60 contain an improper privilege management vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges to access unauthorized delete operation.
מדדים
- CVSS 3.1
-
6.7 (MEDIUM)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-25/9/2026
- CWE
- CWE-269
מוצרים מושפעים
dell: data domain operating system