CVE-2026-23853Disclosure(dell / data_domain_operating_system)

LOWCVSS 8.4 · HIGH

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.50, contain a use of weak credentials vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to unauthorized access to the system.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1391

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • data_domain_operating_system
  • powerprotect_dp_series_appliance

Threat summary

  • 4 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • 4 total mentions across 1 day

Affected systems

Vendors
Products
data_domain_operating_systempowerprotect_dp_series_appliance

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-04-17: 4Technical Details · 2026-04-17: 204-17
Signal classification2 categories
Disclosure
250.0%
General
250.0%
Referenced assets4 URLs
Full discourse4 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-23853 Weak Credentials Vulnerability in Dell PowerProtect Data Domain Operating System https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-23853

    Post summary

    A weak credentials vulnerability (CVE-2026-23853) has been disclosed for Dell PowerProtect Data Domain OS; no exploit, patch, or active exploitation details are provided.

    0000038
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-23853 Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release version 8.3.1.0 through 8.3.1… https://www.cve.org/CVERecord?id=CVE-2026-23853

    Post summary

    The text references CVE-2026-23853 and links to its CVE record, but provides no further technical, exploit, or patch information.

    0000055
    57.2K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-23853 Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.5… CVSS 8.4 Full analysis → https://sec.kaitan.id/cves/CVE-2026-23853 #Dell #CyberSecurity #InfoSec

    Post summary

    A high‑severity vulnerability (CVSS 8.4) in Dell PowerProtect Data Domain OS (V7.7.1.0‑8.5) has been disclosed and detailed in a linked analysis.

    000001
    145 followersView on X
  • VulDB 🛡@vuldb
    General

    A severe vulnerability was disclosed for Dell PowerProtect Data Domain (CVE-2026-23853) https://vuldb.com/vuln/358038

    Post summary

    A severe vulnerability (CVE-2026-23853) in Dell PowerProtect Data Domain has been disclosed, but no technical details, exploit information, or patch guidance are provided.

    0000064
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
OSdelldata_domain_operating_system---
Appdellpowerprotect_dp_series_appliance---

Explore more