Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-29175


Dell PowerProtect Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.40, LTS 7.10.1.30 contain an weak cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to man-in-the-middle attack that exposes sensitive session information.


Published

2024-06-26T03:15:10.303

Last Modified

2024-11-21T09:07:43.653

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-327
  • Type: Primary
    CWE-327

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell data_domain_operating_system < 7.7.5.40 Yes
Operating System dell data_domain_operating_system < 7.10.1.30 Yes
Operating System dell data_domain_operating_system < 7.13.1.0 Yes

References