HIGH✓ PATCH🇵🇱 Wersja polska

CVE-2025-32750

CVSS 7.5v3.1pub. 2026-05-20upd. 2026-06-02

Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
  • Dell Powerflex Appliance Intelligent Catalog

    APP
    Dell
    < 48.383.00
  • Dell Powerflex Manager

    APP
    Dell
    ≤ 4.6.2
  • Dell Powerflex Rack

    APP
    Dell
    < 3.7.8.0
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
Auth Bypass
CWE
References

Related vulnerabilities

CVE-2026-56688CRITICAL9.1PL ✓same product

OS Command Injection w Dell PowerFlex Manager — wykonanie poleceń jako root

CVE-2024-37143CRITICAL10.0PL ✓same product

Krytyczna podatność RCE w produktach Dell PowerFlex, InsightIQ i Data Lakehouse

CVE-2026-56690HIGH8.5PL ✓same product

SQL Injection w Dell PowerFlex Manager — ujawnienie danych

CVE-2026-56689HIGH7.7PL ✓same product

SQL Injection w Dell PowerFlex Manager — ujawnienie informacji

CVE-2026-35065HIGH8.8same product

Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) a Missing Authentication for Critical Function...