Dell PowerProtect Data Domain BoostFS for client of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.50, contain an insufficiently protected credentials vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to credential exposure. The attacker may be able to use the exposed credentials to access the system with privileges of the compromised account.
Metrics
Affected Vendors & Products
References
History
Fri, 17 Apr 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insufficiently Protected Credentials in Dell PowerProtect Data Domain BoostFS |
Fri, 17 Apr 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell PowerProtect Data Domain BoostFS for client of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.50, contain an insufficiently protected credentials vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to credential exposure. The attacker may be able to use the exposed credentials to access the system with privileges of the compromised account. | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2026-04-17T08:12:17.696Z
Reserved: 2025-04-15T21:29:33.584Z
Link: CVE-2025-36568
No data.
Status : Received
Published: 2026-04-17T09:16:05.000
Modified: 2026-04-17T09:16:05.000
Link: CVE-2025-36568
No data.
OpenCVE Enrichment
Updated: 2026-04-17T11:30:16Z