CVE-2023-44284 Information

Description

Dell PowerProtect DD versions prior to 7.13.0.10 LTS 7.7.5.25 LTS 7.10.1.15 6.2.1.110 contain an SQL Injection vulnerability. A remote low privileged attacker could potentially exploit this vulnerability leading to the execution of certain SQL commands on the application’s backend database causing unauthorized read access to application data.

Reference

https://www.dell.com/support/kbdoc/en-us/000220264/dsa-2023-412-dell-technologies-powerprotect-security-update-for-multiple-security-vulnerabilities

Share on: