CyberRota Analysis
AI-GeneratedDell PowerProtect Cyber Recovery versions 20.2 and earlier are susceptible to an SQL injection vulnerability that allows low-privileged remote attackers to manipulate SQL commands. Successful exploitation could lead to unauthorized information disclosure, posing a risk to sensitive data. Organizations using affected versions should prioritize patching to mitigate potential data breaches.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Dell PowerProtect Cyber Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.
Related CVEs
Other vulnerabilities affecting the same vendor(s)