PT-2024-22783 · Dell · Dell Powerprotect Dd

Published

2024-06-26

·

Updated

2024-09-23

·

CVE-2024-29177

CVSS v3.1

2.7

Low

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell PowerProtect DD versions prior to 8.0 Dell PowerProtect DD LTS 7.13.1.0 Dell PowerProtect DD LTS 7.10.1.30 Dell PowerProtect DD LTS 7.7.5.40
Description A disclosure of temporary sensitive information issue exists, allowing a remote high privileged attacker to potentially exploit this and reuse disclosed information to gain unauthorized access to the application report.
Recommendations For Dell PowerProtect DD versions prior to 8.0, update to version 8.0 or later. For Dell PowerProtect DD LTS 7.13.1.0, update to a version later than LTS 7.13.1.0. For Dell PowerProtect DD LTS 7.10.1.30, update to a version later than LTS 7.10.1.30. For Dell PowerProtect DD LTS 7.7.5.40, update to a version later than LTS 7.7.5.40.

Fix

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2024-29177

Affected Products

Dell Powerprotect Dd