CVE-2025-46608

Dell Data Lakehouse, versions prior to 1.6.0.0, contain(s) an Improper Access Control vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges. This vulnerability is considered Critical, as it may result in unauthorized access with elevated privileges, compromising system integrity and customer data. Dell recommends customers upgrade to the latest version at the earliest opportunity.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:data_lakehouse:*:*:*:*:*:*:*:*

History

05 Dec 2025, 20:39

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000390529/dsa-2025-375-security-update-for-dell-data-lakehouse-multiple-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000390529/dsa-2025-375-security-update-for-dell-data-lakehouse-multiple-vulnerabilities - Vendor Advisory
CPE cpe:2.3:a:dell:data_lakehouse:*:*:*:*:*:*:*:*
First Time Dell data Lakehouse
Dell

12 Nov 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-12 21:15

Updated : 2025-12-05 20:39


NVD link : CVE-2025-46608

Mitre link : CVE-2025-46608

CVE.ORG link : CVE-2025-46608


JSON object : View

Products Affected

dell

  • data_lakehouse
CWE
CWE-284

Improper Access Control