Dell Data Lakehouse, version(s) 1.0.0.0, contain(s) a Missing Encryption of Sensitive Data vulnerability in the DDAE (Starburst). A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.
References
Configurations
No configuration.
History
21 Nov 2024, 09:25
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.dell.com/support/kbdoc/en-us/000227053/dsa-2024-303-security-update-for-dell-data-lakehouse-system-software-for-multiple-security-vulnerabilities - |
19 Jul 2024, 13:01
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
18 Jul 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-18 16:15
Updated : 2024-11-21 09:25
NVD link : CVE-2024-38302
Mitre link : CVE-2024-38302
CVE.ORG link : CVE-2024-38302
JSON object : View
Products Affected
No product.
CWE
CWE-311
Missing Encryption of Sensitive Data