Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an improper neutralization of special elements used in an OS command ('OS command Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.
History

Sun, 05 Jul 2026 01:00:00 +0000

Type Values Removed Values Added
Title OS Command Injection via Improper Neutralization on Dell PowerProtect Data Domain

Sat, 04 Jul 2026 17:15:00 +0000

Type Values Removed Values Added
Title Dell PowerProtect Data Domain OS Command Injection

Sat, 04 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
Title Dell PowerProtect Data Domain OS Command Injection

Sat, 04 Jul 2026 05:15:00 +0000

Type Values Removed Values Added
Title Local OS Command Injection in Dell PowerProtect Data Domain

Fri, 03 Jul 2026 21:00:00 +0000

Type Values Removed Values Added
Title Local OS Command Injection in Dell PowerProtect Data Domain

Fri, 03 Jul 2026 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell powerprotect Data Domain
Vendors & Products Dell
Dell powerprotect Data Domain

Fri, 03 Jul 2026 13:15:00 +0000

Type Values Removed Values Added
Description Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an improper neutralization of special elements used in an OS command ('OS command Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.
Weaknesses CWE-78
References
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2026-07-03T12:34:43.239Z

Updated: 2026-07-03T12:34:43.239Z

Reserved: 2026-06-15T17:49:28.560Z

Link: CVE-2026-54483

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

No data.