CVE-2025-21102

Published Jan 8, 2025

Last updated 7 months ago

Overview

Description
Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
Source
security_alert@emc.com
NVD status
Analyzed
Products
vxrail_d560_firmware, vxrail_d560f_firmware, vxrail_e460_firmware, vxrail_e560_firmware, vxrail_e560_vcf_firmware, vxrail_e560f_firmware, vxrail_e560f_vcf_firmware, vxrail_e560n_firmware, vxrail_e560n_vcf_firmware, vxrail_e660_firmware, vxrail_e660f_firmware, vxrail_e660n_firmware, vxrail_e665_firmware, vxrail_e665f_firmware, vxrail_e665n_firmware, vxrail_g560_firmware, vxrail_g560_vcf_firmware, vxrail_g560f_firmware, vxrail_p470_firmware, vxrail_p570_firmware, vxrail_p570_vcf_firmware, vxrail_p570f_firmware, vxrail_p570f_vcf_firmware, vxrail_p580n_firmware, vxrail_p580n_vcf_firmware, vxrail_p670f_firmware, vxrail_p670n_firmware, vxrail_p675f_firmware, vxrail_p675n_firmware, vxrail_s470_firmware, vxrail_s570_firmware, vxrail_s570_vcf_firmware, vxrail_s670_firmware, vxrail_v470_firmware, vxrail_v570_firmware, vxrail_v570_vcf_firmware, vxrail_v670f_firmware, vxrail_vd-4000r_firmware, vxrail_vd-4000w_firmware, vxrail_vd-4000z_firmware, vxrail_vd-4510c_firmware, vxrail_vd-4520c_firmware

Risk scores

CVSS 3.1

Type
Primary
Base score
4.4
Impact score
3.6
Exploitability score
0.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Severity
MEDIUM

Weaknesses

security_alert@emc.com
CWE-256
nvd@nist.gov
CWE-522

Social media

Hype score
Not currently trending

Configurations