---
id: CVE-2026-56085
title: >-
  Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release
  version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through
  8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an use
  of uninit…
summary: >-
  Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release
  version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through
  8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an use
  of uninit…
severity: low
cvss: 3.3
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-908
published: '2026-07-03'
updated: '2026-07-03'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-56085'
references:
  - url: >-
      https://www.dell.com/support/kbdoc/en-us/000481268/dsa-2026-278-security-update-for-dell-powerprotect-data-domain-multiple-vulnerabilities
    label: security_alert@emc.com
tags:
  - nvd
ingestedAt: '2026-07-04T09:56:00.574Z'
epss: 0.00136
epssPercentile: 0.03399
---

## Overview

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an use of uninitialized resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
