Server-Side Vulnerability in Dell Avamar Affects Security Features
CVE-2025-21120
Key Information:
- Vendor
Dell
- Status
- Vendor
- CVE Published:
- 4 August 2025
What is CVE-2025-21120?
Dell Avamar prior to version 19.12 with patch 338905, except for version 19.10SP1 with patch 338904, contains a security vulnerability involving Trusting HTTP Permission Methods on the Server-Side. This weakness allows low privileged attackers with remote access to potentially exploit the system, leading to the exposure of sensitive information. Users are advised to apply the latest patches to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Avamar Data Store Gen4T 19.12
Avamar Data Store Gen4T 19.10, 19.10-SP1, 19.7, 19.8, 19.9 and 19.4 < 19.10SP1 with patch 338904 or later
Avamar Data Store Gen5A 19.12 < 19.12 with patch 338905 or later
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved