Dell Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.30, LTS 7.10.1.20 contain an SQL Injection vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized access to application data.
Metrics
Affected Vendors & Products
References
History
Mon, 23 Sep 2024 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dell
Dell data Domain Operating System |
|
CPEs | cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:* | |
Vendors & Products |
Dell
Dell data Domain Operating System |
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2024-06-26T02:57:41.758Z
Updated: 2024-08-02T01:10:54.083Z
Reserved: 2024-03-18T08:44:18.923Z
Link: CVE-2024-29174
Vulnrichment
Updated: 2024-08-02T01:10:54.083Z
NVD
Status : Analyzed
Published: 2024-06-26T03:15:10.100
Modified: 2024-09-23T21:00:33.127
Link: CVE-2024-29174
Redhat
No data.