CVE-2025-29987

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) versions prior to 8.3.0.15 contain an Insufficient Granularity of Access Control vulnerability. An authenticated user from a trusted remote client could exploit this vulnerability to execute arbitrary commands with root privileges.
Configurations

No configuration.

History

07 Apr 2025, 14:18

Type Values Removed Values Added
Summary
  • (es) Las versiones de Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) anteriores a la 8.3.0.15 presentan una vulnerabilidad de control de acceso con granularidad insuficiente. Un usuario autenticado de un cliente remoto de confianza podría aprovechar esta vulnerabilidad para ejecutar comandos arbitrarios con privilegios de root.

03 Apr 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-03 16:15

Updated : 2025-04-07 14:18


NVD link : CVE-2025-29987

Mitre link : CVE-2025-29987

CVE.ORG link : CVE-2025-29987


JSON object : View

Products Affected

No product.

CWE
CWE-1220

Insufficient Granularity of Access Control