What is CVE-2026-46738?
This is an Improper Input Validation vulnerability in the REST API of Dell PowerProtect Data Manager versions prior to 20.2.0.0. A high-privileged attacker with remote access could exploit this to achieve Elevation of Privileges. It is recommended to immediately upgrade to version 20.2.0.0.
Azərbaycanca: Bu, Dell PowerProtect Data Manager proqramının 20.2.0.0 versiyasından əvvəlki versiyalarında REST API-də mövcud olan Improper Input Validation zəifliyidir. Yüksək imtiyazlı uzaqdan girişi olan təcavüzkar bundan istifadə edərək imtiyazların yüksəldilməsinə nail ola bilər. Mütəxəssislər dərhal 20.2.0.0 versiyasına yeniləmə etməyi tövsiyə edir.
Related CVEs
link basis: same weakness class CWE-20; shared vendor: Dell
FAQ2
Which product is affected by CVE-2026-46738?
This vulnerability affects Dell PowerProtect Data Manager versions prior to 20.2.0.0.
What can an attacker achieve by exploiting CVE-2026-46738?
A high-privileged attacker with remote access can exploit this Improper Input Validation vulnerability to achieve Elevation of Privileges.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.