Dell PowerProtect Cyber Recovery, versions prior to 20.3, contain an Improper Authentication vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
History

Fri, 28 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell cyber Recovery
Dell powerprotect Cyber Recovery
Vendors & Products Dell
Dell cyber Recovery
Dell powerprotect Cyber Recovery

Thu, 27 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 26 Aug 2026 22:15:00 +0000

Type Values Removed Values Added
Title Improper Authentication Allows Unauthorized Access in Dell PowerProtect Cyber Recovery

Wed, 26 Aug 2026 20:15:00 +0000

Type Values Removed Values Added
Description Dell PowerProtect Cyber Recovery, versions prior to 20.3, contain an Improper Authentication vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
Weaknesses CWE-287
References
Metrics cvssV3_1

{'score': 7.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2026-08-26T19:37:36.076Z

Updated: 2026-08-27T14:33:06.905Z

Reserved: 2026-08-25T15:04:54.600Z

Link: CVE-2026-79938

cve-icon Vulnrichment

Updated: 2026-08-27T14:27:22.919Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-26T20:18:14.140

Modified: 2026-08-28T15:29:44.967

Link: CVE-2026-79938

cve-icon Redhat

No data.