UNIX Symlink Vulnerability in Dell PowerProtect Cyber Recovery
CVE-2026-79939

5.8MEDIUM

Key Information:

Vendor

Dell

Vendor
CVE Published:
26 August 2026

What is CVE-2026-79939?

The Dell PowerProtect Cyber Recovery product prior to version 20.3 is susceptible to a UNIX Symbolic Link (Symlink) Following vulnerability. This flaw allows low privileged attackers with local access to exploit the system, potentially leading to script injection attacks. Proper mitigation strategies should be implemented to protect against unauthorized access and ensure system integrity.

Affected Version(s)

Cyber Recovery 0

Cyber Recovery 0

Power Protect Cyber Recovery 0 < 20.3.0.0

References

CVSS V3.1

Score:
5.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.