CVE-2025-22475
04.02.2025, 03:15
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote attacker could potentially exploit this vulnerability, leading to Information tampering.Enginsight
Vendor | Product | Version |
---|---|---|
dell | data_domain_operating_system | 7.10.1.0 ≤ 𝑥 < 7.10.1.50 |
dell | data_domain_operating_system | 7.13.1.0 ≤ 𝑥 < 7.13.1.10 |
dell | data_domain_operating_system | 7.14.0.0 ≤ 𝑥 < 8.3.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-1240 - Use of a Cryptographic Primitive with a Risky ImplementationTo fulfill the need for a cryptographic primitive, the product implements a cryptographic algorithm using a non-standard, unproven, or disallowed/non-compliant cryptographic implementation.
- CWE-327 - Use of a Broken or Risky Cryptographic AlgorithmThe use of a broken or risky cryptographic algorithm is an unnecessary risk that may result in the exposure of sensitive information.