CVE-2026-22769 · Dell RecoverPoint for Virtual Machines (RP4VMs): Dell RecoverPoint for Virtual Machines (RP4VMs) Use of Hard-coded Credentials Vulnerability
[CISA KEV actively exploited] Vendor: Dell | Product: RecoverPoint for Virtual Machines (RP4VMs) | Dell RecoverPoint for Virtual Machines (RP4VMs) contains an use of hard-coded credentials vulnerability that could allow an unauthenticated remote attacker to gain unauthorized access to the underlying operating system and root-level persistence. | Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Due date: 2026-02-21 | Ransomware use: Unknown | Added: 2026-02-18 CVEs: CVE-2026-22769. CISA KEV/exploitation signal detected. Vendors: Dell, Google. DORA relevance: medium.