Skip to main content

CVE-2025-36599: CWE-532: Insertion of Sensitive Information into Log File in Dell PowerFlex Manager VM

Medium
VulnerabilityCVE-2025-36599cvecve-2025-36599cwe-532
Published: Wed Jul 09 2025 (07/09/2025, 18:30:31 UTC)
Source: CVE Database V5
Vendor/Project: Dell
Product: PowerFlex Manager VM

Description

Dell PowerFlex Manager VM, versions prior to 4.6.2.1, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the system with privileges of the compromised account.

Technical Details

Data Version
5.1
Assigner Short Name
dell
Date Reserved
2025-04-15T21:32:11.414Z
Cvss Version
3.1
State
PUBLISHED

Threat ID: 686ebaf16f40f0eb7205cb80

Added to database: 7/9/2025, 6:54:41 PM

Last updated: 7/9/2025, 6:54:41 PM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats