CVE-2025-22475

Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote attacker could potentially exploit this vulnerability, leading to Information tampering.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*

History

07 Feb 2025, 20:42

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000279157/dsa-2025-022-security-update-for-dell-powerprotect-dd-multiple-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000279157/dsa-2025-022-security-update-for-dell-powerprotect-dd-multiple-vulnerabilities - Vendor Advisory
CPE cpe:2.3:o:dell:data_domain_operating_system:*:*:*:*:*:*:*:*
Summary
  • (es) Dell PowerProtect DD, versiones anteriores a DDOS 8.3.0.0, 7.10.1.50 y 7.13.1.10 contienen una vulnerabilidad de implementación riesgosa con uso de primitiva criptográfica. Un atacante remoto podría aprovechar esta vulnerabilidad, lo que provocaría la manipulación de la información.
First Time Dell data Domain Operating System
Dell
CWE CWE-327

04 Feb 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-04 03:15

Updated : 2025-02-07 20:42


NVD link : CVE-2025-22475

Mitre link : CVE-2025-22475

CVE.ORG link : CVE-2025-22475


JSON object : View

Products Affected

dell

  • data_domain_operating_system
CWE
CWE-1240

Use of a Cryptographic Primitive with a Risky Implementation

CWE-327

Use of a Broken or Risky Cryptographic Algorithm