Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-29174


Dell Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.30, LTS 7.10.1.20 contain an SQL Injection vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized access to application data.


Published

2024-06-26T03:15:10.100

Last Modified

2024-11-21T09:07:43.507

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.4 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell data_domain_operating_system < 7.7.5.40 Yes
Operating System dell data_domain_operating_system < 7.10.1.30 Yes
Operating System dell data_domain_operating_system < 7.13.1.0 Yes

References