BlackTreeCVE IntelligenceOfficial source evidencewww.dell.comVersioned article
Official source article · www.dell.com
DSA-2026-278: Security Update for Dell PowerProtect Data Domain Multiple Vulnerabilities | Dell US
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publisherwww.dell.com
Article IDNo stable ID in source URL
Verified snapshot28 Sept 2026, 02:48 UTC
Linked CVEs21
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2026-53479Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-53481Dell PowerProtect Data Domain — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
- CVE-2026-53483Dell PowerProtect Data Domain — Improper Authentication
- CVE-2026-44269Dell PowerProtect Data Domain — Improper Link Resolution Before File Access ('Link Following')
- CVE-2026-49813Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-46730Dell PowerProtect Data Domain — Incorrect Authorization
- CVE-2026-54483Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-26355Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-53478Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-49815Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-49814Dell PowerProtect Data Domain — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
- CVE-2026-46464Dell PowerProtect Data Domain — Improper Link Resolution Before File Access ('Link Following')
- CVE-2026-46467Dell PowerProtect Data Domain — Insertion of Sensitive Information into Log File
- CVE-2026-41124Dell PowerProtect Data Domain — Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
- CVE-2026-46468Dell PowerProtect Data Domain — Improper Link Resolution Before File Access ('Link Following')
- CVE-2026-46465Dell PowerProtect Data Domain — Use of Externally-Controlled Format String
- CVE-2026-46463Dell PowerProtect Data Domain — Integer Overflow or Wraparound
- CVE-2026-41123Dell PowerProtect Data Domain — Improper Access Control
- CVE-2026-56085Dell PowerProtect Data Domain — Use of Uninitialized Resource
- CVE-2026-44268Dell PowerProtect Data Domain — Incorrect Permission Assignment for Critical Resource
- CVE-2026-46466Dell PowerProtect Data Domain — Use of Less Trusted Source
Source and provenance
Original title: DSA-2026-278: Security Update for Dell PowerProtect Data Domain Multiple Vulnerabilities | Dell US. Captured 28 Sept 2026, 02:48 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗