PatchSiren cyber security CVE debrief
CVE-2026-35072 Dell CVE debrief
Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0 are affected by an OS command injection vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges. This CVE record was published on 2026-04-17T11:16:10.090Z and has not been modified since then. The vulnerability has a CVSS score of 6.7 and a severity of MEDIUM. Security teams and administrators responsible for Dell PowerProtect Data Domain Feature Release systems should prioritize patching and monitoring.
- Vendor
- Dell
- Product
- PowerProtect Data Domain
- CVSS
- MEDIUM 6.7
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-04-17
- Original CVE updated
- 2026-08-04
- Advisory published
- 2026-04-17
- Advisory updated
- 2026-08-04
Who should care
Security teams and administrators responsible for Dell PowerProtect Data Domain Feature Release systems, particularly those with high-privileged local access, should prioritize patching and monitoring. This includes teams managing Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0. They should review and update incident response plans, and implement compensating controls to restrict local access to high-privileged users if patching is not immediately feasible. Additionally, they should monitor for suspicious command execution activity and review system logs for potential security incidents related to this vulnerability. It's also crucial for vulnerability management teams to inventory and verify affected systems within their environments. Collaboration with IT operations teams is necessary to ensure timely patching or application of vendor-recommended updates. The security team should also consider the potential operational impact of this vulnerability and plan accordingly to minimize disruptions. Finally, asset owners should be informed about the potential risks and the necessary mitigation steps to protect their systems and data. This vulnerability's impact on the organization depends on the effectiveness of its security measures and the promptness of its response to the vulnerability. Therefore, proactive measures and continuous monitoring are essential to mitigate potential risks effectively. The security team should track exceptions, retest remediated assets, and close the item only after evidence is documented. They should also check relevant monitoring, detection, and logs for exposed assets that need extra review. The security team should confirm whether affected product deployments exist in managed environments and assign an owner for follow-up. They should review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance. They should plan vendor-supported updates or mitigations through normal change control where exposure is confirmed. They should review compensating controls for exposed systems while remediation is scheduled and verified. They should also track
Technical summary
CVE-2026-35072 is an OS command injection vulnerability in Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0. A high privileged attacker with local access could exploit this vulnerability, leading to arbitrary command execution with root privileges. The vulnerability has a CVSS score of 6.7 and a severity of MEDIUM. The CVE record was published on 2026-04-17T11:16:10.090Z and has not been modified since then.
Defensive priority
Medium priority due to local access requirement and root privilege escalation
Recommended defensive actions
- Inventory and verify affected Dell PowerProtect Data Domain Feature Release versions
- Apply vendor-recommended patches or updates
- Implement compensating controls to restrict local access to high-privileged users
- Monitor for suspicious command execution activity
- Review and update incident response plans
Evidence notes
The CVE-2026-35072 record indicates Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0 are vulnerable to OS command injection. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges. Evidence is based on official CVE and NVD records.
Official resources
-
CVE-2026-35072 CVE record
CVE.org
-
CVE-2026-35072 NVD detail
NVD
-
Source item URL
nvd_modified
-
Mitigation or vendor reference
[email protected] - Vendor Advisory
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-04-17T11:16:10.090Z and has not been modified since then.