CVE-2025-36599: CWE-532: Insertion of Sensitive Information into Log File in Dell PowerFlex Manager VM
Dell PowerFlex Manager VM, versions prior to 4.6.2.1, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the system with privileges of the compromised account.
CVE-2025-36599: CWE-532: Insertion of Sensitive Information into Log File in Dell PowerFlex Manager VM
Description
Dell PowerFlex Manager VM, versions prior to 4.6.2.1, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the system with privileges of the compromised account.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- dell
- Date Reserved
- 2025-04-15T21:32:11.414Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 686ebaf16f40f0eb7205cb80
Added to database: 7/9/2025, 6:54:41 PM
Last updated: 7/9/2025, 6:54:41 PM
Views: 1
Related Threats
CVE-2025-53620: CWE-248: Uncaught Exception in QwikDev qwik
CriticalCVE-2025-53548: CWE-345: Insufficient Verification of Data Authenticity in clerk javascript
HighCVE-2025-53645: n/a
HighCVE-2025-44525: n/a
HighUncovering Privilege Escalation Bugs in Lenovo Vantage — Atredis Partners
MediumActions
External Links
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.