Skip to content
COOEY

EXPOSURES › CVE-2026-22769

CVE-2026-22769

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2026-02-18 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2026-22769 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 exploited-in-wildunpatchedhardcoded-creds

Dell RP4VMs exposed due to hardcoded creds

Dell's RP4VMs had unpatched hardcoded credentials, allowing remote unauthenticated access and root-level persistence, linked to active exploitation.

Shame score — Active exploitation of a severe unpatched hardcoded credentials vulnerability in a widely used product by the DIB.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Dell RecoverPoint for Virtual Machines (RP4VMs) contains an use of hard-coded credentials vulnerability that could allow an unauthenticated remote attacker to gain unauthorized access to the underlying operating system and root-level persistence.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.