ZeroHour

CVE-2024-29174

CVSS 3.1
4.4 medium
EPSS
<1%p10
Published
()
Modified
Description

Dell Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.30, LTS 7.10.1.20 contain an SQL Injection vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized access to application data.

Vendors
dell
Products
data domain operating system
Weakness
CWE-89
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.