Insecure Storage of Sensitive Information in Dell PowerFlex Manager
CVE-2025-32746

4MEDIUM

What is CVE-2025-32746?

Dell PowerFlex Manager contains a vulnerability that allows for the insecure storage of sensitive information. An unauthenticated attacker with local access could exploit this flaw to gain unauthorized access to confidential data, potentially compromising the security of the system. It is essential for users of affected versions to review and apply recommended security updates to mitigate the risks associated with this vulnerability.

Affected Version(s)

PowerFlex Manager 0 <= 4.6.2

PowerFlex Manager (Appliance) 0

PowerFlex Manager (Appliance) 0

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.