CVE-2024-48010

Dell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to escalation of privilege on the application.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*

History

26 Nov 2024, 19:26

Type Values Removed Values Added
CPE cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
First Time Dell
Dell data Domain Operating System
CWE NVD-CWE-noinfo
References () https://www.dell.com/support/kbdoc/en-us/000245360/dsa-2024-424-security-update-for-dell-pdsa-2024-424-security-update-for-dell-powerprotect-dd-vulnerabilityowerprotect-dd-vulnerability - () https://www.dell.com/support/kbdoc/en-us/000245360/dsa-2024-424-security-update-for-dell-pdsa-2024-424-security-update-for-dell-powerprotect-dd-vulnerabilityowerprotect-dd-vulnerability - Vendor Advisory

08 Nov 2024, 19:01

Type Values Removed Values Added
Summary
  • (es) Dell PowerProtect DD, versiones anteriores a 8.1.0.0, 7.13.1.10, 7.10.1.40 y 7.7.5.50, contiene una vulnerabilidad de control de acceso. Un atacante remoto con privilegios elevados podría aprovechar esta vulnerabilidad, lo que provocaría una escalada de privilegios en la aplicación.

08 Nov 2024, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-08 03:15

Updated : 2024-11-26 19:26


NVD link : CVE-2024-48010

Mitre link : CVE-2024-48010

CVE.ORG link : CVE-2024-48010


JSON object : View

Products Affected

dell

  • data_domain_operating_system
CWE
CWE-284

Improper Access Control

NVD-CWE-noinfo