TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2026-22769

CRITICALCISA KEV
10.0

Beschreibung

Dell RecoverPoint for Virtual Machines, versions prior to 6.0.3.1 HF1, contain a hardcoded credential vulnerability. This is considered critical as an unauthenticated remote attacker with knowledge of the hardcoded credential could potentially exploit this vulnerability leading to unauthorized access to the underlying operating system and root-level persistence. Dell recommends that customers upgrade or apply one of the remediations as soon as possible.

CVE Details

CVSS v3.1 Bewertung10.0
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht2/17/2026
Zuletzt geandert2/20/2026
Quellekev
Honeypot-Sichtungen0

CISA KEV

HerstellerDell
ProduktRecoverPoint for Virtual Machines (RP4VMs)
SchwachstellennameDell RecoverPoint for Virtual Machines (RP4VMs) Use of Hard-coded Credentials Vulnerability
KEV Aufnahmedatum2026-02-18
Behebungsfrist2026-02-21
Ransomware-NutzungUnknown

Betroffene Produkte

dell:recoverpoint_for_virtual_machines

Schwachen (CWE)

CWE-798CWE-798

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.