CVE-2025-46608 PUBLISHED

Assigner: dell
Reserved: 25.04.2025 Published: 12.11.2025 Updated: 13.11.2025

Dell Data Lakehouse, versions prior to 1.6.0.0, contain(s) an Improper Access Control vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges. This vulnerability is considered Critical, as it may result in unauthorized access with elevated privileges, compromising system integrity and customer data. Dell recommends customers upgrade to the latest version at the earliest opportunity.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVSS Score: 9.1

Product Status

Vendor Dell
Product Data Lakehouse
Versions Default: unaffected
  • affected from N/A to 1.6.0.0 (excl.)

References

Problem Types

  • CWE-284: Improper Access Control CWE