High severity7.2NVD Advisory· Published Aug 26, 2026· Updated Sep 3, 2026
CVE-2026-71171
CVE-2026-71171
Description
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=20.2
Patches
Vulnerability mechanics
References
1News mentions
1- Dell: 15 Vulnerabilities Including Critical Command Injection Flaws Disclosed TogetherVypr Intelligence · Aug 26, 2026