CVE-2026-22269

Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communication Channel vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:*

History

17 Jun 2026, 10:19

Type Values Removed Values Added
Summary
  • (es) Dell PowerProtect Data Manager, versión(es) anterior(es) a la 19.22, contiene una vulnerabilidad de Verificación Incorrecta del Origen de un Canal de Comunicación en la API REST. Un atacante con altos privilegios con acceso remoto podría potencialmente explotar esta vulnerabilidad, lo que lleva a la elusión de mecanismos de protección.

20 Feb 2026, 16:36

Type Values Removed Values Added
First Time Dell powerprotect Data Manager
Dell
CPE cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:*
References () https://www.dell.com/support/kbdoc/en-us/000429778/dsa-2026-046-security-update-for-dell-powerprotect-data-manager-multiple-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000429778/dsa-2026-046-security-update-for-dell-powerprotect-data-manager-multiple-vulnerabilities - Vendor Advisory

19 Feb 2026, 09:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-19 09:16

Updated : 2026-06-17 10:19


NVD link : CVE-2026-22269

Mitre link : CVE-2026-22269

CVE.ORG link : CVE-2026-22269


JSON object : View

Products Affected

dell

  • powerprotect_data_manager
CWE
CWE-940

Improper Verification of Source of a Communication Channel