Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote attacker could potentially exploit this vulnerability, leading to Information tampering.
CVE ID: CVE-2025-22475
CVSS Base Severity: LOW
CVSS Base Score: 3.7
CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Vendor: Dell
Product: PowerProtect DD
EPSS Score: 0.09% (probability of being exploited)
EPSS Percentile: 39.62% (scored less or equal to compared to others)
EPSS Date: 2025-03-05 (when was this score calculated)