CVE-2025-46641: Medium severity Dell PowerProtect Data Domain (Data Domain Operating System) vulnerability
Published Apr 17, 2026
·Updated
Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 8.4 through 8.5 contain an improper authentication vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.
Affected Software
2 affected components
Dell PowerProtect Data Domain (Data Domain Operating System)>=8.4<=8.5
Dell Data Domain Operating System>=8.4.0.0<=8.5.0.0
Event History
Apr 17, 2026
CVE Published
via MITRE·11:19 AM
Data Sourced
via MITRE·11:19 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-46641?
CVE-2025-46641 is classified as a high severity vulnerability.
2
How do I fix CVE-2025-46641?
To mitigate CVE-2025-46641, users should apply the latest security updates provided by Dell for PowerProtect Data Domain.
3
Who is affected by CVE-2025-46641?
CVE-2025-46641 affects users of Dell PowerProtect Data Domain running DD OS versions 8.4 through 8.5.
4
What type of vulnerability is CVE-2025-46641?
CVE-2025-46641 is an improper authentication vulnerability.
5
Can CVE-2025-46641 be exploited remotely?
Yes, CVE-2025-46641 can be exploited remotely by a high privileged attacker.