Improper Certificate Validation in Dell PowerFlex Manager
CVE-2025-32745

4.2MEDIUM

What is CVE-2025-32745?

Dell PowerFlex Manager versions up to 4.6.2 are susceptible to a flaw related to improper certificate validation. This vulnerability allows an unauthenticated attacker within the same network segment to exploit the weakness and potentially manipulate sensitive information. Organizations using this software should prioritize updating their systems to mitigate the risk associated with this vulnerability.

Affected Version(s)

PowerFlex Manager 0 <= 4.6.2

PowerFlex Manager (Appliance) 0

PowerFlex Manager (Appliance) 0

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.