CVE-2025-46606: High severity Dell PowerProtect Data Domain (DD OS) vulnerability
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 8.4 through 8.5 contain an improper restriction of excessive authentication attempts vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-46606?
CVE-2025-46606 is categorized as high severity due to the potential for remote exploitation by attackers.
How do I fix CVE-2025-46606?
To fix CVE-2025-46606, update to the latest version of Dell PowerProtect Data Domain that addresses this vulnerability.
What systems are affected by CVE-2025-46606?
CVE-2025-46606 affects Dell PowerProtect Data Domain systems running DD OS versions between 8.4 and 8.5.
What kind of attack can exploit CVE-2025-46606?
An attacker with high privileges and remote access could exploit CVE-2025-46606 by attempting excessive authentication attempts.
Is there a workaround for CVE-2025-46606?
There are no official workarounds for CVE-2025-46606, so applying the recommended software update is essential for protection.