Dell Data Lakehouse, versions prior to 1.6.0.0, contain(s) an Improper Access Control vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges. This vulnerability is considered Critical, as it may result in unauthorized access with elevated privileges, compromising system integrity and customer data. Dell recommends customers upgrade to the latest version at the earliest opportunity.
References
Configurations
History
05 Dec 2025, 20:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.dell.com/support/kbdoc/en-us/000390529/dsa-2025-375-security-update-for-dell-data-lakehouse-multiple-vulnerabilities - Vendor Advisory | |
| CPE | cpe:2.3:a:dell:data_lakehouse:*:*:*:*:*:*:*:* | |
| First Time |
Dell data Lakehouse
Dell |
12 Nov 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-12 21:15
Updated : 2025-12-05 20:39
NVD link : CVE-2025-46608
Mitre link : CVE-2025-46608
CVE.ORG link : CVE-2025-46608
JSON object : View
Products Affected
dell
- data_lakehouse
CWE
CWE-284
Improper Access Control
