CVE-2024-29175: Dell Data Domain Operating System

Medium severity, CVSS 5.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Dell PowerProtect Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.40, LTS 7.10.1.30 contain an weak cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to man-in-the-middle attack that exposes sensitive session information.

Affected products

  • Dell Data Domain Operating System: before 7.7.5.40 (fixed in 7.7.5.40); from 7.8.0.0, before 7.10.1.30 (fixed in 7.10.1.30); from 7.11.0.0, before 7.13.1.0 (fixed in 7.13.1.0)

Published 2024-06-26. Last modified 2026-06-17.