CVE-2023-44278
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a path traversal vulnerability. A local high privileged attacker could potentially exploit this vulnerability, to gain unauthorized read and write access to the OS files stored on the server filesystem, with the privileges of the running application.
Affected (13)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.7.6 |
| Running on/with | Platform Versions |
|---|---|
Dell Dp4400 | All versions |
Dell Dp5900 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.2.1.110 | |
| Before 6.2.1.110 | |
| Before 6.2.1.110 | |
| Before 6.2.1.110 |
| Running on/with | Platform Versions |
|---|---|
Dell Dd3300 | All versions |
Dell Dd6400 | All versions |
Dell Dd6900 | All versions |
Dell Dd9400 | All versions |
Dell Dd9900 | All versions |
References (2)
Source: security_alert@emc.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.