First published: Thu Dec 14 2023(Updated: )
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI. A remote high privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS to bypass security restriction. Exploitation may lead to a system take over by an attacker.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Any of | ||
Dell Apex Protection Storage | <6.2.1.110 | |
Dell Apex Protection Storage | >=7.0<7.10.1.15 | |
Dell Powerprotect Data Domain | <6.2.1.110 | |
Dell Powerprotect Data Domain | >=7.0<7.12.0.0 | |
Dell Powerprotect Data Domain Management Center | <6.2.1.110 | |
Dell Powerprotect Data Domain Management Center | >=7.0<7.13.0.10 | |
Dell Emc Data Domain Os | <6.2.1.110 | |
Dell Emc Data Domain Os | >=7.0<7.12.0.0 | |
Dell Emc Data Domain Os | >=7.7<7.7.5.25 | |
Dell Emc Data Domain Os | >=7.10<7.10.1.15 | |
Dell Powerprotect Data Domain Management Center | >=7.7<7.7.5.25 | |
Dell Powerprotect Data Domain Management Center | >=7.10<7.10.1.15 | |
Any of | ||
Dell Dd3300 | ||
Dell Dd6400 | ||
Dell Dd6900 | ||
Dell Dd9400 | ||
Dell Dd9900 | ||
All of | ||
Dell Powerprotect Data Protection | <2.7.6 | |
Any of | ||
Dell Dp4400 | ||
Dell Dp5900 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.