CVE-2026-41123: Medium severity Dell PowerProtect Data Domain vulnerability
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an improper access control vulnerability in the RBAC. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to information tampering.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-41123?
The severity of CVE-2026-41123 is medium with a score of 4.3.
How do I fix CVE-2026-41123?
To fix CVE-2026-41123, update your Dell PowerProtect Data Domain to the latest patched version as recommended by Dell.
Which versions are affected by CVE-2026-41123?
CVE-2026-41123 affects Dell PowerProtect Data Domain versions from 7.7.1.0 to 8.6 and multiple LTS release versions.
What type of vulnerability is CVE-2026-41123?
CVE-2026-41123 is an improper access control vulnerability in the role-based access control (RBAC) system.
Who is at risk for CVE-2026-41123?
A low privileged attacker could exploit CVE-2026-41123 to gain unauthorized access affecting the confidentiality and integrity of the system.