CVE-2024-25971: Dell Powerprotect Data Manager
Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.
Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to information disclosure, denial-of-service.
Affected products
- Dell Powerprotect Data Manager: before 19.16 (fixed in 19.16)
Published 2024-03-28. Last modified 2026-06-17.