ZeroHour

CVE-2023-44278

CVSS 3.1
6.7 medium
EPSS
<1%p21
Published
()
Modified
Description

Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a path traversal vulnerability. A local high privileged attacker could potentially exploit this vulnerability, to gain unauthorized read and write access to the OS files stored on the server filesystem, with the privileges of the running application.

Vendors
dell
Products
powerprotect data protection, apex protection storage, powerprotect data domain, powerprotect data domain management center, emc data domain os
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.