CVE-2026-40712
Critical · CVSS 9.1- CVSS
- 9.1
- nvd
- EPSS
- 0.34%
- 27th pct
- KEV
- No
- Class
- other
- CWE-20
Description
Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.
References
Status: profiled · ingested 2026-07-29T18:00:00.000Z