Dell PowerProtect DM <=20.2.0.0: Remote RLE via Data/Memory Layout
CVE-2026-68860 Published on September 3, 2026

Dell PowerProtect Data Manager, versions 20.2.0.0 and below, contain a Reliance on Data/Memory Layout vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to Launch of phishing attacks.

Vendor Advisory NVD

Vulnerability Analysis

CVE-2026-68860 is exploitable with network access, requires user interaction. This vulnerability is consided to have a high level of attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality and integrity, and no impact on availability.

Attack Vector:
NETWORK
Attack Complexity:
HIGH
Privileges Required:
NONE
User Interaction:
REQUIRED
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
NONE

Weakness Type

Reliance on Data/Memory Layout

The software makes invalid assumptions about how protocol data or memory is organized at a lower level, resulting in unintended program behavior.


Products Associated with CVE-2026-68860

Want to know whenever a new CVE is published for Dell Powerprotect Data Manager? stack.watch will email you.

 

Affected Versions

Dell PowerProtect Data Manager: