Dell TechnologiesCVE-2026-74774
Dell Technologies PowerProtect One: improper certificate validation
Medium5.9CVE-2026-74774 · Published Aug 26, 2026 · updated Aug 28, 2026
Dell PowerProtect One, versions 20.1.0.0 and below, contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| PowerProtect One Product | < 20.3.0.0 | 20.3.0.0 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-295
More Dell Technologies advisories
All Dell Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Aug 26 | Dell Technologies Cyber Recovery: improper authentication | High7.6 | Power Protect Cyber Recovery 20.3.0.0+2 more |
| Aug 26 | Dell PowerProtect Cyber Recovery | Medium5.8 | Power Protect Cyber Recovery 20.3.0.0+2 more |
| Aug 26 | Dell Technologies Cloud Disaster Recovery: server-side request forgery | Medium4.3 | CDR 20.3 |
| Aug 26 | Dell Technologies PowerProtect One: command injection | High8.8 | 20.3.0.0 |
| Aug 26 | Dell Technologies PowerProtect One: tampering | Medium6.5 | 20.3.0.0 |
| Aug 26 | Dell PowerProtect One | Medium5.3 | 20.3.0.0 |