ZeroHour

CVE-2025-36589

CVSS 3.1
7.1 high
EPSS
<1%p20
Published
()
Modified
Description

Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access to data and resources outside of the intended sphere of control.

Vendors
dell
Products
unisphere for powermax, unisphere for powermax virtual appliance
Weakness
CWE-611
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

In the news

No ingested article mentions this CVE yet.