logo

A Vulnerability in Dell RecoverPoint for Virtual Machines Could Allow for Arbitrary Code Execution

ID: 8a333431-de00-5848-b369-c1a04723c0d1

STIX ID: report--8a333431-de00-5848-b369-c1a04723c0d1

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2026-02-18

Date Updated: 2026-04-27

...
...

A critical hardcoded-credential vulnerability (CVE-2026-22769) in Dell RecoverPoint for Virtual Machines prior to 6.0.3.1 HF1 could allow an unauthenticated remote attacker who knows the credential to achieve arbitrary code execution and root-level persistence, enabling installation of programs, data access/modification, or creation of privileged accounts; the issue is mapped to ATT&CK tactic Execution (T1203) and no active exploitation is reported.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.