CVE-2024-53296

Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in the RestAPI. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Denial of service.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*

History

07 Feb 2025, 19:54

Type Values Removed Values Added
CPE cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
CWE CWE-121 CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.9
First Time Dell
Dell data Domain Operating System
References () https://www.dell.com/support/kbdoc/en-us/000279157/dsa-2025-022-security-update-for-dell-powerprotect-dd-multiple-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000279157/dsa-2025-022-security-update-for-dell-powerprotect-dd-multiple-vulnerabilities - Vendor Advisory

01 Feb 2025, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-01 04:15

Updated : 2025-02-07 19:54


NVD link : CVE-2024-53296

Mitre link : CVE-2024-53296


JSON object : View

Products Affected

dell

  • data_domain_operating_system
CWE
CWE-787

Out-of-bounds Write