CVE-2025-46605: High severity Dell PowerProtect Data Domain (DD OS) vulnerability
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 8.4 through 8.5 contain a session fixation vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-46605?
CVE-2025-46605 has been classified as a high severity vulnerability due to the potential for unauthorized access by an attacker with remote access.
How do I fix CVE-2025-46605?
To fix CVE-2025-46605, you should apply the latest security update provided by Dell for the PowerProtect Data Domain operating system.
Who is affected by CVE-2025-46605?
CVE-2025-46605 affects Dell PowerProtect Data Domain devices running versions 8.4 through 8.5 of the Data Domain Operating System.
What types of attacks can exploit CVE-2025-46605?
CVE-2025-46605 can potentially be exploited by attackers conducting session fixation attacks to gain unauthorized access.
What are the consequences of CVE-2025-46605 if exploited?
If exploited, CVE-2025-46605 could allow an attacker to gain unauthorized access to the system, compromising the security and integrity of data.