Description
Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain an OS command injection vulnerability in an admin operation. A remote low privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the system application's underlying OS with the privileges of the vulnerable application. Exploitation may lead to a system take over by an attacker.
INFO
Published Date :
2024-06-26T03:54:38.461Z
Last Modified :
2024-08-02T03:50:54.530Z
Source :
dell
AFFECTED PRODUCTS
The following products are affected by CVE-2024-37140 vulnerability.
| Vendors | Products |
|---|---|
| Dell |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2024-37140.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact