# CVE-2024-53295

## Summary

- **CVE ID:** CVE-2024-53295
- **Severity:** HIGH
- **CVSS Score:** 7.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
- **CWE:** CWE-1220
- **Published:** Feb 1, 2025
- **Last Modified:** Mar 13, 2026

## Description

Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability. A local malicious user with low privileges could potentially exploit this vulnerability leading to escalation of privilege.

## Affected Products

- Dell — PowerProtect DD (7.7.1.0)
- Dell — PowerProtect DD (7.13.1.0)
- Dell — PowerProtect DD (7.10.1.0)

## References

- [CNA](https://www.dell.com/support/kbdoc/en-us/000279157/dsa-2025-022-security-update-for-dell-powerprotect-dd-multiple-vulnerabilities)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.14%
- **EPSS Percentile:** 4.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._