PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-35072 Dell CVE debrief

Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0 are affected by an OS command injection vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges. This CVE record was published on 2026-04-17T11:16:10.090Z and has not been modified since then. The vulnerability has a CVSS score of 6.7 and a severity of MEDIUM. Security teams and administrators responsible for Dell PowerProtect Data Domain Feature Release systems should prioritize patching and monitoring.

Vendor
Dell
Product
PowerProtect Data Domain
CVSS
MEDIUM 6.7
CISA KEV
Not listed in stored evidence
Original CVE published
2026-04-17
Original CVE updated
2026-08-04
Advisory published
2026-04-17
Advisory updated
2026-08-04

Who should care

Security teams and administrators responsible for Dell PowerProtect Data Domain Feature Release systems, particularly those with high-privileged local access, should prioritize patching and monitoring. This includes teams managing Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0. They should review and update incident response plans, and implement compensating controls to restrict local access to high-privileged users if patching is not immediately feasible. Additionally, they should monitor for suspicious command execution activity and review system logs for potential security incidents related to this vulnerability. It's also crucial for vulnerability management teams to inventory and verify affected systems within their environments. Collaboration with IT operations teams is necessary to ensure timely patching or application of vendor-recommended updates. The security team should also consider the potential operational impact of this vulnerability and plan accordingly to minimize disruptions. Finally, asset owners should be informed about the potential risks and the necessary mitigation steps to protect their systems and data. This vulnerability's impact on the organization depends on the effectiveness of its security measures and the promptness of its response to the vulnerability. Therefore, proactive measures and continuous monitoring are essential to mitigate potential risks effectively. The security team should track exceptions, retest remediated assets, and close the item only after evidence is documented. They should also check relevant monitoring, detection, and logs for exposed assets that need extra review. The security team should confirm whether affected product deployments exist in managed environments and assign an owner for follow-up. They should review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance. They should plan vendor-supported updates or mitigations through normal change control where exposure is confirmed. They should review compensating controls for exposed systems while remediation is scheduled and verified. They should also track

Technical summary

CVE-2026-35072 is an OS command injection vulnerability in Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0. A high privileged attacker with local access could exploit this vulnerability, leading to arbitrary command execution with root privileges. The vulnerability has a CVSS score of 6.7 and a severity of MEDIUM. The CVE record was published on 2026-04-17T11:16:10.090Z and has not been modified since then.

Defensive priority

Medium priority due to local access requirement and root privilege escalation

Recommended defensive actions

  • Inventory and verify affected Dell PowerProtect Data Domain Feature Release versions
  • Apply vendor-recommended patches or updates
  • Implement compensating controls to restrict local access to high-privileged users
  • Monitor for suspicious command execution activity
  • Review and update incident response plans

Evidence notes

The CVE-2026-35072 record indicates Dell PowerProtect Data Domain Feature Release versions 7.7.1.0 through 8.6.0.0 and version 8.7.0.0 are vulnerable to OS command injection. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges. Evidence is based on official CVE and NVD records.

Official resources

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-04-17T11:16:10.090Z and has not been modified since then.