CVE-2026-24505: Dell Data Domain Operating System

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

Dell PowerProtect Data Domain, versions 8.5 through 8.6 contain an improper input validation vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges.

Affected products

  • Dell Data Domain Operating System: from 7.7.1.0, before 8.6.1.0 (fixed in 8.6.1.0)
  • Dell Powerprotect Dp Series Appliance: before 2.7.9 (fixed in 2.7.9)

Published 2026-04-20. Last modified 2026-06-17.