cbcvebase.
CVE-2024-53295
published 2025-02-01

CVE-2024-53295: Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability. A local malicious user with low…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.14%
3.9th percentile
Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability. A local malicious user with low privileges could potentially exploit this vulnerability leading to escalation of privilege.

Affected

6 ranges
VendorProductVersion rangeFixed in
delldata_domain_operating_system>= 7.10.1.0 < 7.10.1.507.10.1.50
delldata_domain_operating_system>= 7.13.1.0 < 7.13.1.207.13.1.20
delldata_domain_operating_system>= 7.14.0.0 < 8.3.0.08.3.0.0
dellpowerprotect_dd7.10.1.0 – 7.10.1.40
dellpowerprotect_dd7.13.1.0 – 7.13.1.10
dellpowerprotect_dd7.7.1.0 – 8.1.0.10
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.