Vulnerability Details CVE-2026-74770
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 63.4%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2026-74770
-
cpe:2.3:a:dell:powerprotect_one:-
-
cpe:2.3:a:dell:powerprotect_one:20.1.0.0