CVE-2026-54483: OS Command Injection
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an improper neutralization of special elements used in an OS command ('OS command Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-54483?
The severity of CVE-2026-54483 is medium with a CVSS score of 6.7.
How do I fix CVE-2026-54483?
To fix CVE-2026-54483, update your Dell PowerProtect Data Domain to the latest version provided by Dell.
What products are affected by CVE-2026-54483?
CVE-2026-54483 affects Dell PowerProtect Data Domain versions 7.7.1.0 through 8.6 and specific LTS release versions.
What type of vulnerability is CVE-2026-54483?
CVE-2026-54483 is classified as an OS command injection vulnerability.
What are the potential impacts of CVE-2026-54483?
The potential impacts of CVE-2026-54483 include unauthorized access, data leakage, and data corruption due to improper handling of OS commands.