CVE-2025-23375
- EPSS 0.02%
- Veröffentlicht 28.04.2025 14:28:03
- Zuletzt bearbeitet 13.05.2025 13:25:06
Dell PowerProtect Data Manager Reporting, version(s) 19.17, contain(s) an Incorrect Use of Privileged APIs vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
CVE-2024-25971
- EPSS 0.05%
- Veröffentlicht 28.03.2024 19:15:48
- Zuletzt bearbeitet 27.01.2025 18:55:14
Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to information disclosure, denial-of-service.
CVE-2024-22445
- EPSS 0.19%
- Veröffentlicht 13.02.2024 08:16:35
- Zuletzt bearbeitet 21.11.2024 08:56:18
Dell PowerProtect Data Manager, version 19.15 and prior versions, contain an OS command injection vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the...
CVE-2024-22454
- EPSS 1.1%
- Veröffentlicht 13.02.2024 08:16:35
- Zuletzt bearbeitet 21.11.2024 08:56:19
Dell PowerProtect Data Manager, version 19.15 and prior versions, contain a weak password recovery mechanism for forgotten passwords. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to unauthorized access to t...
CVE-2023-28062
- EPSS 0.07%
- Veröffentlicht 11.04.2023 14:15:07
- Zuletzt bearbeitet 21.11.2024 07:54:18
Dell PPDM versions 19.12, 19.11 and 19.10, contain an improper access control vulnerability. A remote authenticated malicious user with low privileges could potentially exploit this vulnerability to bypass intended access restrictions and perform un...
CVE-2020-5356
- EPSS 0.17%
- Veröffentlicht 06.07.2020 18:15:20
- Zuletzt bearbeitet 21.11.2024 05:33:58
Dell PowerProtect Data Manager (PPDM) versions prior to 19.4 and Dell PowerProtect X400 versions prior to 3.2 contain an improper authorization vulnerability. A remote authenticated malicious user may download any file from the affected PowerProtect ...