nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-51534 CVE-2024-51534
HIGH
Record summary
CVE-2024-51534 has a selected CVSS score of 7.1 (high).
Description
Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A local low privileged could potentially exploit this vulnerability to gain unauthorized overwrite of OS files stored on the server filesystem. Exploitation could lead to denial of service.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 3, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
PowerProtect DDBrowse Dell / PowerProtect DDDefault status: unaffected | CVE List | 7.7.1.0 to ≤ 8.1.0.10 | affected |
| 7.7.1.0 to ≤ 7.13.1.10 | affected | ||
| 7.7.1.0 to ≤ 7.10.1.40 | affected |
References
2dell.comVendor advisory
https://www.dell.com/support/kbdoc/en-us/000279157/dsa-2025-022-security-update-for-dell-powerprotect-dd-multiple-vulnerabilities