Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-40712

Опубликовано: 22 июл. 2026
Источник: nvd
CVSS3: 9.1
CVSS3: 7.2
EPSS Низкий

Описание

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:*
Версия до 20.2 (исключая)

EPSS

Процентиль: 28%
0.00349
Низкий

9.1 Critical

CVSS3

7.2 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 9.1
github
около 1 месяца назад

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

EPSS

Процентиль: 28%
0.00349
Низкий

9.1 Critical

CVSS3

7.2 High

CVSS3

Дефекты

CWE-20