CVE-2026-74770: Dell Powerprotect One

High severity, CVSS 8.8. EPSS: 2% chance of exploitation in the next 30 days.

Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

Affected products

  • Dell Powerprotect One: up to and including 20.1.0.0

Published 2026-08-26. Last modified 2026-08-28.