Improper Certificate Validation in Dell PowerProtect Data Domain Systems
CVE-2026-23776
7.2HIGH
What is CVE-2026-23776?
Dell PowerProtect Data Domain systems featuring specific versions of the Data Domain Operating System exhibit a vulnerability related to improper certificate validation during certificate-based login. This flaw invites potential exploitation by low privileged attackers with remote access, creating avenues for elevation of privileges and potentially compromising the integrity of the affected systems.
Affected Version(s)
PowerProtect Data Domain 0 < 8.3.1.30 or later
PowerProtect Data Domain 0 < 7.13.1.70 or later
PowerProtect Data Domain 0 < 8.6.0.0 or later