MEDIUM✓ PATCH🇵🇱 Wersja polska

CVE-2025-46424

CVSS 6.7v3.1pub. 2025-11-05upd. 2025-11-07

Dell CloudLink, versions prior to 8.2, contain use of a Cryptographic Primitive with a Risky Implementation vulnerability. A high privileged attacker could potentially exploit this vulnerability leading to Denial of service.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
  • Dell Cloudlink

    APP
    Dell
    < 8.2
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
DoS
CWE
References

Related vulnerabilities

CVE-2025-45378CRITICAL9.1PL ✓same product

Dell CloudLink: command injection przez ucieczkę z restricted shell

CVE-2025-46364CRITICAL9.1PL ✓same product

Dell CloudLink — CLI Escape umożliwia przejęcie kontroli nad systemem

CVE-2022-34379CRITICAL9.4PL ✓same product

Authentication Bypass w Dell EMC CloudLink — logowanie bez hasła

CVE-2022-34380CRITICAL9.3PL ✓same product

Authentication Bypass w Dell CloudLink — obejście uwierzytelnienia konsoli systemowej

CVE-2021-36312CRITICAL9.1PL ✓same product

Dell EMC CloudLink — zakodowane hasło umożliwiające nieautoryzowany dostęp