CVE-2026-53483
Last modified
CVE-2026-53483 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 an improper authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. EPSS estimates a 0.63% chance of exploitation in the next 30 days.
Description
Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 an improper authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access. This is a critical severity vulnerability as it allows an attacker to take complete control of system; so Dell recommends customers to upgrade at the earliest opportunity.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dell | Data Domain Operating System | >= 7.7.1.0, < 7.13.1.80 |
| Dell | Data Domain Operating System | >= 7.14.0.0, < 8.3.1.40 |
| Dell | Data Domain Operating System | >= 8.4.0.0, < 8.6.1.20 |
| Dell | Data Domain Operating System | >= 8.7.0.0, < 8.8.0.0 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-53483?
How severe is CVE-2026-53483?
How do I fix CVE-2026-53483?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-53478Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7,…7.2
- CVE-2026-53479Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7,…7.2
- CVE-2026-5348The Academy LMS – WordPress LMS Plugin for Complete eLearnin…5.3
- CVE-2026-53480Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7,…2.7
- CVE-2026-53481Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7,…9.8
- CVE-2026-53482Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7,…7.5
- CVE-2026-53486The decompress package for Node.js extracts archives. Prior …9.1
- CVE-2026-53488containerd is an open-source container runtime. In versions …8.8
- CVE-2026-53489containerd is an open-source container runtime. Versions pri…6.5
- CVE-2026-5349A vulnerability was identified in Trendnet TEW-657BRM 1.00.1…8.8
- CVE-2026-53492containerd is an open-source container runtime. In Versions …9.6
- CVE-2026-5350A security flaw has been discovered in Trendnet TEW-657BRM 1…8.8
Are you affected by CVE-2026-53483?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
