LDAP Injection Vulnerability in Dell PowerMax and Unisphere
CVE-2025-27686
2.7LOW
What is CVE-2025-27686?
Dell Unisphere for PowerMax and PowerMax products prior to specified versions are susceptible to an LDAP injection vulnerability. A malicious actor with high privileges and remote access may manipulate LDAP queries, potentially leading to unauthorized access and script injection within affected systems. It is essential for users to update their deployments to mitigate this risk and protect sensitive data.
Affected Version(s)
Unisphere for PowerMax < 9.2.4.15
Unisphere for PowerMax < 10.2.0.9