Risky Cryptographic Algorithm in Dell PowerProtect Data Domain
CVE-2025-43891

5.3MEDIUM

What is CVE-2025-43891?

The Dell PowerProtect Data Domain systems running specific versions of the Data Domain Operating System are vulnerable to an issue in the authentication mechanism. This vulnerability arises from the use of problematic cryptographic algorithms, allowing unauthenticated attackers with remote access to potentially exploit the weakness, which could result in the disclosure of sensitive information.

Affected Version(s)

PowerProtect Data Domain with Data Domain Operating System (DD OS) LTS2023 7.10.1.0 < 7.10.1.70

PowerProtect Data Domain with Data Domain Operating System (DD OS) LTS2024 7.13.1.0 < 7.13.1.40

PowerProtect Data Domain with Data Domain Operating System (DD OS) LTS2025 8.3.1.0 < 8.3.1.10

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-43891 : Risky Cryptographic Algorithm in Dell PowerProtect Data Domain