HomeDellCVE-2026-22769

CVE-2026-22769

CRITICAL
10.0CVSS
Published: 2026-02-17
Updated: 2026-02-18
AI Analysis

Description

Dell RecoverPoint for Virtual Machines, versions prior to 6.0.3.1 HF1, contain a hardcoded credential vulnerability. This is considered critical as an unauthenticated remote attacker with knowledge of the hardcoded credential could potentially exploit this vulnerability leading to unauthorized access to the underlying operating system and root-level persistence. Dell recommends that customers upgrade or apply one of the remediations as soon as possible.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Attack Vector
network
Complexity
low
Privileges
none
User Action
none
Scope
changed
Confidentiality
high
Integrity
high
Availability
high
Weaknesses
CWE-798CWE-798

Metadata

Primary Vendor
DELL
Published
2/17/2026
Last Modified
2/18/2026
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

dell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machinesdell : recoverpoint_for_virtual_machines

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief