Information Exposure Vulnerability in Dell PowerFlex Manager Software
CVE-2025-32750

7.5HIGH

What is CVE-2025-32750?

Dell PowerFlex Manager, versions prior to 4.6.2, are susceptible to an exposure of information vulnerability due to directory listing configurations. This allows an unauthenticated remote attacker to access sensitive information that could potentially be exploited, amplifying the risks of data breaches and unauthorized information access. Organizations using affected versions should prioritize applying updates and implementing security measures to mitigate these risks.

Affected Version(s)

PowerFlex Manager 0 <= 4.6.2

PowerFlex Manager (Appliance) 0

PowerFlex Manager (Appliance) 0

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.