Description
Dell PowerProtect Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.40, LTS 7.10.1.30 contain an weak cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to man-in-the-middle attack that exposes sensitive session information.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26208 | Dell PowerProtect Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.40, LTS 7.10.1.30 contain an weak cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to man-in-the-middle attack that exposes sensitive session information. |
References
History
Mon, 23 Sep 2024 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell data Domain Operating System |
|
| CPEs | cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Dell
Dell data Domain Operating System |
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-08-02T01:10:54.627Z
Reserved: 2024-03-18T08:44:18.923Z
Link: CVE-2024-29175
Updated: 2024-08-02T01:10:54.627Z
Status : Modified
Published: 2024-06-26T03:15:10.303
Modified: 2024-11-21T09:07:43.653
Link: CVE-2024-29175
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD