CVE-2024-48010

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
08/11/2024
Last modified:
26/11/2024

Description

Dell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to escalation of privilege on the application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:* 7.7.0.0 (including) 7.7.5.50 (excluding)
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:* 7.10.0.0 (including) 7.10.1.40 (excluding)
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:* 7.13.0.0 (including) 7.13.1.10 (excluding)
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:* 8.0.0.0 (including) 8.1.0.0 (excluding)