← Back

CVE-2026-71171

nvd nist
Published: Aug 26, 2026Modified: Sep 3, 2026

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: security_alert@emc.com (Secondary)

Description

Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.

Affected (1)

1 product
Cloud Disaster Recovery
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 20.3

Timeline

No history available yet.