← Back

CVE-2024-29174

nvd nist
Published: Jun 26, 2024Modified: Nov 21, 2024

JSON object

Loading...
4.4
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Exploitability: 1.8 / Impact: 2.5
Source: NVD

Description

Dell Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.30, LTS 7.10.1.20 contain an SQL Injection vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized access to application data.

Affected (3)

1 product
Data Domain Operating System
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Dell
Before 7.7.5.40
From 7.11.0.0 to 7.13.1.0
From 7.8.0.0 to 7.10.1.30

Timeline

No history available yet.