CVE-2026-24506Disclosure(dell / data_domain_operating_system)

LOWCVSS 7.2 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.60 contain an OS command injection vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution as root.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • data_domain_operating_system
  • powerprotect_dp_series_appliance

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 2 mentions (2026-04-20); latest day: 2
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
data_domain_operating_systempowerprotect_dp_series_appliance

Deep dive

Activity timeline4 mentions / 2d
01122Mentions · 2026-04-20: 2Mentions · 2026-04-21: 2Technical Details · 2026-04-20: 204-2004-21
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Full discourse4 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-24506 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.60 con… https://www.cve.org/CVERecord?id=CVE-2026-24506 ----- Traducción: CVE-2026-24506 Del… http://infoflow.cloud`

    Post summary

    The tweet announces CVE-2026-24506, lists affected Dell PowerProtect Data Domain versions, and provides a link to the CVE record, but offers no further exploitation or patch details.

    0000015
    72 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-24506 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.60 con… https://www.cve.org/CVERecord?id=CVE-2026-24506

    Post summary

    The text merely cites the CVE ID and affected Dell PowerProtect Data Domain versions, linking to the official CVE record, without providing additional technical details, exploit information, or patch info.

    00000103
    57.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-24506 OS Command Injection in Dell PowerProtect Data Domain Multiple Versions https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-24506

    Post summary

    The text announces CVE-2026-24506 as an OS Command Injection vulnerability in Dell PowerProtect Data Domain and provides a link to a vuln database, without detailed exploitation or mitigation information.

    0000034
    4.0K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-24506 Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 … CVSS 7.2 Full analysis → https://sec.kaitan.id/cves/CVE-2026-24506 #Dell #CyberSecurity #InfoSec

    Post summary

    The text announces a high‑severity vulnerability (CVE-2026-24506) affecting Dell PowerProtect Data Domain, providing affected versions and a CVSS score, with a link to a detailed analysis.

    000002
    124 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
OSdelldata_domain_operating_system---
Appdellpowerprotect_dp_series_appliance---

Explore more