Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4356 articles · 196341 vulns · 36/41 feeds (7d)
← Back to list
7.2
CVE-2026-23501PATCHED
Dell · RecoverPoint for Virtual Machines

CVE-2026-23501: Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Special Elements used in a

Description

Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.

Affected Products

VendorProductVersions
DellRecoverPoint for Virtual Machines0

References

  • https://www.dell.com/support/kbdoc/en-us/000501664/dsa-2026-096-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities(vendor-advisory)

Related News (1 articles)

Tier C
VulDB4d ago
CVE-2026-23501 | Dell RecoverPoint 6.0.3/6.0.3.1 os command injection
→ No new info (linked only)
CVSS 3.17.2 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
6.1
CWECWE-78
PublishedAug 19, 2026
Last enriched4d ago
Trending Score18
Source articles1
Independent1
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-56685
CVE-2026-56685: Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Com
Trending: 30
CRITICALCVE-2026-67271
CVE-2026-67271: Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in the SMB/CIFS. An unauthenticated attacker with r
Trending: 24
MEDIUMCVE-2026-59911
CVE-2026-59911: Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Insertion of Sensitive Information into Log File vulnerabilit
Trending: 23
HIGHCVE-2026-54794
CVE-2026-54794: Dell OpenManage Enterprise, versions prior to 4.7.0, contains a Server-Side Request Forgery (SSRF) vulnerability. An una
Trending: 21
HIGHCVE-2026-58565
CVE-2026-58565: Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorization vulnerability. A low privileged atta
Trending: 18

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 19, 2026
Discovered by ZDM
Aug 19, 2026
Patch Available
Aug 20, 2026