PT-2026-63431 · Dell · Dell Powerprotect Data Manager
CVE-2026-49499
·
Published
2026-07-22
·
Updated
2026-07-24
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Dell PowerProtect Data Manager versions prior to 20.2.0.0
Description
The Identity and Access Management (IAM) component contains a flaw in the generation of security tokens. A remote attacker with low privileges could exploit this issue to achieve elevation of privileges.
Recommendations
Update Dell PowerProtect Data Manager to version 20.2.0.0 or later.
Fix
LPE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Powerprotect Data Manager