High severity7.8NVD Advisory· Published Sep 10, 2025· Updated Jun 17, 2026
CVE-2025-43885
CVE-2025-43885
Description
Dell PowerProtect Data Manager, version(s) 19.19 and 19.20, Hyper-V contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:*range: <19.21
- (no CPE)range: 19.19, 19.20
- Range: N/A
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.