Path Traversal Vulnerability in Dell PowerProtect Data Domain Products
CVE-2025-43934

6MEDIUM

What is CVE-2025-43934?

Dell PowerProtect Data Domain systems running specific versions are susceptible to a Path Traversal vulnerability. This flaw allows a high privileged attacker with local access to manipulate file paths, potentially leading to unauthorized access and denial of service. Effected users should apply security updates to mitigate the risks associated with this vulnerability.

Affected Version(s)

PowerProtect Data Domain with Data Domain Operating System (DD OS) LTS2023 7.10.1.0 < 7.10.1.70

PowerProtect Data Domain with Data Domain Operating System (DD OS) LTS2024 7.13.1.0 < 7.13.1.40

PowerProtect Data Domain with Data Domain Operating System (DD OS) LTS2025 8.3.1.0 < 8.3.1.10

References

CVSS V3.1

Score:
6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-43934 : Path Traversal Vulnerability in Dell PowerProtect Data Domain Products