CVE-2026-41124
Dell PowerProtect Data Domain Path Traversal
Description
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an Improper limitation of a pathname to a restricted directory ('path traversal') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
INFO
Published Date :
July 3, 2026, 12:19 p.m.
Last Modified :
July 3, 2026, 12:19 p.m.
Remotely Exploit :
No
Source :
dell
CVSS Scores
| Score | Version | Severity | Vector | Exploitability Score | Impact Score | Source |
|---|---|---|---|---|---|---|
| CVSS 3.1 | LOW | c550e75a-17ff-4988-97f0-544cde3820fe |
Solution
- Consult Dell security advisories for specific patch details.
- Apply the latest available security updates.
- Restrict local access for high privileged accounts.
- Monitor system logs for suspicious activity.
We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).
Results are limited to the first 15 repositories due to potential performance issues.
The following list is the news that have been mention
CVE-2026-41124 vulnerability anywhere in the article.