CVE-2025-46605: Dell Data Domain Operating System

High severity, CVSS 7.2. EPSS: 0.3% chance of exploitation in the next 30 days.

Dell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 8.4 through 8.5 contain a session fixation vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.

Affected products

  • Dell Data Domain Operating System: from 8.4.0.0, before 8.6.0.0 (fixed in 8.6.0.0)

Published 2026-04-17. Last modified 2026-10-07.