CVE-2026-74771: Medium severity Dell PowerProtect One vulnerability
Published Aug 26, 2026
·Updated
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Authorization Bypass Through User-Controlled Key vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information tampering.
Affected Software
1 affected component
Dell PowerProtect One<=20.1.0.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell PowerProtect Oneto a version that resolves this vulnerability.Fixed in 20.1.0.0
Event History
Aug 26, 2026
CVE Published
via MITRE·07:11 PM
Data Sourced
via MITRE·07:11 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments are affected?
Dell PowerProtect One versions 20.1.0.0 and below are affected.
2
What level of access does an attacker need?
An attacker needs remote access and low-privileged access to the affected product. No user interaction is required.
3
What is the potential impact of exploitation?
Successful exploitation could allow information tampering. The available data does not indicate confidentiality disclosure or service availability impact.