Description
Dell PowerProtect One, versions 20.1.0.0 and below, contain a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Denial of service.
Published: 2026-08-26
Score: 7.5 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability is a stack-based buffer overflow located in Dell PowerProtect One software. The flaw enables an unauthenticated attacker with remote access to craft an overlong input that corrupts the call stack, causing the service to crash and become unavailable, resulting in a denial‑of‑service condition.

Affected Systems

Dell PowerProtect One platform, versions 20.1.0.0 and earlier, is affected by the stack-based buffer overflow.

Risk and Exploitability

The CVSS score of 7.5 indicates a high severity, and the EPSS score is not available. The vulnerability is not listed in the KEV catalog. Attackers would only need unauthenticated remote access; no authentication is required, so the risk of exploitation is significant for exposed systems. A successful attack would stop the PowerProtect One service from processing jobs, disrupting backup and recovery operations.

Generated by OpenCVE AI on August 26, 2026 at 20:44 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Dell PowerProtect One software update available from Dell support that addresses the buffer overflow vulnerability.
  • If immediate upgrading is not possible, restrict remote network access to the PowerProtect One appliance using firewalls or security groups to block unauthenticated connections until the patch is applied.
  • Enable detailed logging on the appliance and review logs for anomalous activity that could indicate attempts to trigger the buffer overflow, and respond promptly to any intrusion attempts.

Generated by OpenCVE AI on August 26, 2026 at 20:44 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 26 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
Title Stack-based Buffer Overflow in Dell PowerProtect One Leading to Denial of Service

Wed, 26 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
Description Dell PowerProtect One, versions 20.1.0.0 and below, contain a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Denial of service.
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2026-08-26T18:50:10.312Z

Reserved: 2026-07-31T17:04:55.170Z

Link: CVE-2026-68863

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-26T20:17:57.833

Modified: 2026-08-26T20:17:57.833

Link: CVE-2026-68863

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-26T20:45:03Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow