Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communication Channel vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.
References
Configurations
History
20 Feb 2026, 16:36
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Dell powerprotect Data Manager
Dell |
|
| CPE | cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:* | |
| References | () https://www.dell.com/support/kbdoc/en-us/000429778/dsa-2026-046-security-update-for-dell-powerprotect-data-manager-multiple-vulnerabilities - Vendor Advisory |
19 Feb 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-19 09:16
Updated : 2026-02-20 16:36
NVD link : CVE-2026-22269
Mitre link : CVE-2026-22269
CVE.ORG link : CVE-2026-22269
JSON object : View
Products Affected
dell
- powerprotect_data_manager
CWE
CWE-940
Improper Verification of Source of a Communication Channel
