Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-36589

Опубликовано: 06 янв. 2026
Источник: nvd
CVSS3: 7.6
CVSS3: 7.1
EPSS Низкий

Описание

Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access to data and resources outside of the intended sphere of control.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:dell:unisphere_for_powermax:9.2.4.18:*:*:*:*:*:*:*
cpe:2.3:a:dell:unisphere_for_powermax_virtual_appliance:*:*:*:*:*:*:*:*
Версия от 9.2.4.17 (включая) до 9.2.4.19 (исключая)

EPSS

Процентиль: 19%
0.00059
Низкий

7.6 High

CVSS3

7.1 High

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 7.6
github
около 1 месяца назад

Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access to data and resources outside of the intended sphere of control.

EPSS

Процентиль: 19%
0.00059
Низкий

7.6 High

CVSS3

7.1 High

CVSS3

Дефекты

CWE-611