EIP-2026-102816

PRE-CVE

Dell EMC RecoverPoint boxmgmt CLI < 5.1.2 - Arbitrary File Read

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-102816. PoCs published by Paul Taylor.

AI-analyzed exploit summary This exploit leverages the Dell EMC RecoverPoint boxmgmt CLI to perform arbitrary file reads by abusing the SSH command's configuration file option. The PoC demonstrates reading /etc/passwd by passing it as a configuration file to SSH, which outputs the file contents as error messages.

Description

Dell EMC RecoverPoint boxmgmt CLI < 5.1.2 - Arbitrary File Read

Exploits (1)

exploitdb WORKING POC
by Paul Taylor · textlocallinux
https://www.exploit-db.com/exploits/44688

This exploit leverages the Dell EMC RecoverPoint boxmgmt CLI to perform arbitrary file reads by abusing the SSH command's configuration file option. The PoC demonstrates reading /etc/passwd by passing it as a configuration file to SSH, which outputs the file contents as error messages.

Classification
Working Poc 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Dell EMC RecoverPoint (RP4VMs < 5.1.1.3, RP < 5.1.2)
Auth required
Prerequisites: SSH access to the target system · boxmgmt credentials (default: boxmgmt/boxmgmt)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026