Dell Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.30, LTS 7.10.1.20 contain an SQL Injection vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized access to application data.
History

Mon, 23 Sep 2024 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Dell
Dell data Domain Operating System
CPEs cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
Vendors & Products Dell
Dell data Domain Operating System

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2024-06-26T02:57:41.758Z

Updated: 2024-08-02T01:10:54.083Z

Reserved: 2024-03-18T08:44:18.923Z

Link: CVE-2024-29174

cve-icon Vulnrichment

Updated: 2024-08-02T01:10:54.083Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-26T03:15:10.100

Modified: 2024-09-23T21:00:33.127

Link: CVE-2024-29174

cve-icon Redhat

No data.