Information Exposure Vulnerability in Dell PowerFlex Manager Software
CVE-2025-32749

5.3MEDIUM

What is CVE-2025-32749?

The Dell PowerFlex Manager software versions up to 4.6.2 contain a vulnerability that allows unauthenticated remote attackers to exploit improper directory listing configurations. This could lead to unauthorized access to sensitive information, potentially compromising the integrity of the system and its data. Users are advised to update their software to mitigate this risk.

Affected Version(s)

PowerFlex Manager 0 <= 4.6.2

PowerFlex Manager (Appliance) 0

PowerFlex Manager (Appliance) 0

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.