CVE-2024-48010

D

ell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to escalation of privilege on the application.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*

History

26 Nov 2024, 19:26

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000245360/dsa-2024-424-security-update-for-dell-pdsa-2024-424-security-update-for-dell-powerprotect-dd-vulnerabilityowerprotect-dd-vulnerability - () https://www.dell.com/support/kbdoc/en-us/000245360/dsa-2024-424-security-update-for-dell-pdsa-2024-424-security-update-for-dell-powerprotect-dd-vulnerabilityowerprotect-dd-vulnerability - Vendor Advisory
CPE cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Dell data Domain Operating System
Dell

08 Nov 2024, 19:01

Type Values Removed Values Added
Summary
  • (es) Dell PowerProtect DD, versiones anteriores a 8.1.0.0, 7.13.1.10, 7.10.1.40 y 7.7.5.50, contiene una vulnerabilidad de control de acceso. Un atacante remoto con privilegios elevados podría aprovechar esta vulnerabilidad, lo que provocaría una escalada de privilegios en la aplicación.

08 Nov 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-08 03:15

Updated : 2024-11-26 19:26


NVD link : CVE-2024-48010

Mitre link : CVE-2024-48010

CVE.ORG link : CVE-2024-48010


JSON object : View

CWE
CWE-284

Improper Access Control

NVD-CWE-noinfo