CVE-2026-79939: Dell Powerprotect Cyber Recovery

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Dell PowerProtect Cyber Recovery, versions Prior to 20.3, contain an UNIX Symbolic Link (Symlink) Following vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Script injection.

Affected products

  • Dell Powerprotect Cyber Recovery: before 20.3.0.0 (fixed in 20.3.0.0)

Published 2026-08-26. Last modified 2026-09-01.