---
id: CVE-2026-46730
title: >-
  Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release
  version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through
  8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an
  incorrect aut…
summary: >-
  Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release
  version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through
  8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an
  incorrect aut…
severity: medium
cvss: 4.2
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-863
published: '2026-07-03'
updated: '2026-07-03'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-46730'
references:
  - url: >-
      https://www.dell.com/support/kbdoc/en-us/000481268/dsa-2026-278-security-update-for-dell-powerprotect-data-domain-multiple-vulnerabilities
    label: security_alert@emc.com
tags:
  - nvd
ingestedAt: '2026-07-04T08:55:57.597Z'
epss: 0.00172
epssPercentile: 0.05808
---

## Overview

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an incorrect authorization vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to unauthorized command execution.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
