Description

Dell Avamar, versions prior to 19.12 with patch 338905, excluding 19.10 and 19.10SP1 with patch 338869, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.

INFO

Published Date :

2024-12-10T10:26:54.861Z

Last Modified :

2025-08-04T18:39:35.486Z

Source :

dell
AFFECTED PRODUCTS

The following products are affected by CVE-2024-47977 vulnerability.

Vendors Products
Dell
  • Avamar Data Store
  • Avamar Server
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-47977.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact