Dell PowerProtect Data Manager Hyper-V Incorrect Default Permissions Vulnerability Allowing Privilege Escalation

Vulnerability

A vulnerability has been identified in Dell PowerProtect Data Manager versions 19.19 and 19.20 for Hyper-V. This vulnerability involves incorrect default permissions, which could be exploited by a low-privileged attacker with local access to elevate privileges.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation.

Remediation

Users can upgrade to Dell PowerProtect Data Manager version 19.21.0-11 or later to address this vulnerability.

Added: Sep 10, 2025, 4:30 PM
Updated: Sep 10, 2025, 4:30 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
2.5
exploitability
3.5
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.