CVE-2026-26354General(dell / data_domain_operating_system)

LOWCVSS 9.8 · CRITICAL

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell PowerProtect Data Domain with Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.10, LTS2024 release versions 7.13.1.0 through 7.13.1.60, contain a stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-121CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • data_domain_operating_system
  • powerprotect_dp_series_appliance

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-04-23)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
data_domain_operating_systempowerprotect_dp_series_appliance

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-22: 1Mentions · 2026-04-23: 204-2204-23
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-221
Disclosure1
2026-04-232
General2
Full discourse3 posts
  • VulDB 🛡@vuldb
    Disclosure

    A severe vulnerability was disclosed for Dell PowerProtect Data Domain (CVE-2026-26354) https://vuldb.com/vuln/359043

    Post summary

    The tweet announces the disclosure of CVE-2026-26354 as a severe vulnerability affecting Dell PowerProtect Data Domain, without additional technical or mitigation details.

    01010116
    2.1K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-26354 Dell PowerProtect Data Domain with Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.10, … https://www.cve.org/CVERecord?id=CVE-2026-26354

    Post summary

    The text provides only the CVE identifier and a reference link, with no additional vulnerability, PoC, exploit, or mitigation details.

    00010146
    57.2K followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-26354 Dell PowerProtect Data Domain with Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.10, … https://www.cve.org/CVERecord?id=CVE-2026-26354 ----- Traducción: CVE-2026-26354 Del… http://infoflow.cloud`

    Post summary

    The post merely cites CVE‑2026‑26354, provides a link to its CVE record, and lists affected software versions, with no additional details on exploitation, mitigation, or severity.

    0000037
    72 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
OSdelldata_domain_operating_system---
Appdellpowerprotect_dp_series_appliance---

Explore more