Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability. A low privileged remote attacker could potentially exploit this vulnerability by running any command as root, leading to gaining of root-level access and compromise of complete system.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell recoverpoint For Virtual Machines |
|
| Weaknesses | CWE-78 | |
| CPEs | cpe:2.3:a:dell:recoverpoint_for_virtual_machines:6.0:sp1:*:*:*:*:*:* cpe:2.3:a:dell:recoverpoint_for_virtual_machines:6.0:sp1_p1:*:*:*:*:*:* |
|
| Vendors & Products |
Dell
Dell recoverpoint For Virtual Machines |
Mon, 23 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Dec 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability. A low privileged remote attacker could potentially exploit this vulnerability by running any command as root, leading to gaining of root-level access and compromise of complete system. | |
| Weaknesses | CWE-347 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published: 2024-12-13T13:25:25.661Z
Updated: 2024-12-23T18:07:41.498Z
Reserved: 2024-01-10T15:29:59.457Z
Link: CVE-2024-22461
Updated: 2024-12-23T18:07:36.910Z
Status : Analyzed
Published: 2024-12-13T14:15:21.383
Modified: 2025-02-04T15:52:29.483
Link: CVE-2024-22461
No data.