Description

Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain an OS command injection vulnerability in an admin operation. A remote low privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the system application's underlying OS with the privileges of the vulnerable application. Exploitation may lead to a system take over by an attacker.

INFO

Published Date :

2024-06-26T03:54:38.461Z

Last Modified :

2024-08-02T03:50:54.530Z

Source :

dell
AFFECTED PRODUCTS

The following products are affected by CVE-2024-37140 vulnerability.

Vendors Products
Dell
  • Data Domain Operating System
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-37140.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact