Low Encryption Strength Vulnerability in Dell Data Protection Advisor Could Lead to Denial of Service
CVE-2024-28974
6.5MEDIUM
Key Information:
- Vendor
Dell
- Vendor
- CVE Published:
- 29 May 2024
What is CVE-2024-28974?
The Inadequate Encryption Strength vulnerability present in Dell Data Protection Advisor version 19.9 allows low privileged attackers with remote access to exploit the weakness. This exploitation can potentially lead to a Denial of Service condition, impacting the availability of the service. As the vulnerability stems from insufficient encryption measures, it is critical for organizations using this product to apply security updates and configurations recommended by Dell to mitigate the risk.
Affected Version(s)
Data Protection Advisor 19.5 <= 19.9
PowerProtect DP Series Appliance (IDPA) <= 2.7.6