SQL Injection Vulnerability in Dell PowerProtect DD

SQL Injection Vulnerability in Dell PowerProtect DD

CVE-2023-44284 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an SQL Injection vulnerability. A remote low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing unauthorized read access to application data.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.