#VU102867 OS Command Injection in RecoverPoint for VMs - CVE-2024-22426
Published: January 16, 2025
RecoverPoint for VMs
Dell
Description
The vulnerability allows a remote attacker to execute arbitrary shell commands on the target system.
The vulnerability exists due to improper input validation. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to execute arbitrary operating system commands, which will get executed in the context of the root user, resulting in a complete system compromise.