Impact
The vulnerability is a use of less trusted source (CWE‑348). A remote attacker who can acquire high privileged remote access could supply input that the system incorrectly treats as trusted, permitting the attacker to modify stored information.
Affected Systems
Dell PowerProtect Data Domain appliances in versions 7.7.1.0 through 8.7, the LTS2026 release series 8.6.1.0 through 8.6.1.10, the LTS2025 release series 8.3.1.0 through 8.3.1.30, and the LTS2024 release series 7.13.1.0 through 7.13.1.70 are affected.
Risk and Exploitability
The CVSS score of 2.7 combined with an EPSS score of less than 1% indicates a very low probability of exploitation. The vulnerability requires remote authentication with high privileges and the ability to supply malicious data, creating a risk of intentional data tampering.
OpenCVE Enrichment