Security Advisory

CVE-2026-40712

9.1
CRITICAL

Vulnerability Description

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.
Published Date July 22, 2026
Official Source NIST NVD Advisory