CVE-2024-38302

Severity CVSS v4.0:
Pending analysis
Type:
CWE-311 Missing Encryption of Sensitive Data
Publication date:
18/07/2024
Last modified:
04/02/2025

Description

Dell Data Lakehouse, version(s) 1.0.0.0, contain(s) a Missing Encryption of Sensitive Data vulnerability in the DDAE (Starburst). A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:data_lakehouse:1.0.0.0:*:*:*:*:*:*:*