- Description
- Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an insertion of sensitive information into log file vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.
- Source
- security_alert@emc.com
- NVD status
- Analyzed
- Products
- powerscale_onefs
CVSS 3.1
- Type
- Secondary
- Base score
- 6.6
- Impact score
- 5.2
- Exploitability score
- 1.3
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H
- Severity
- MEDIUM
- security_alert@emc.com
- CWE-532
- Hype score
- Not currently trending
CVE-2025-43937 Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an insertion of sensitive information into log file vulnerability. A low privileged attacker with local ac… https://t.co/VUwiq23ud0
@CVEnew
17 Apr 2026
102 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-43937 Sensitive Information Disclosure in Dell PowerScale OneFS Prior to 9.12.0.0 https://t.co/JOEw2EVuSc
@VulmonFeeds
17 Apr 2026
71 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
"matchCriteriaId": "E2CB3CCA-1CD2-413A-A9D1-4C89267D6DA3",
"versionEndExcluding": "9.5.1.5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
"matchCriteriaId": "78A9B66B-77E0-475D-ACF7-668364C4821F",
"versionEndExcluding": "9.7.1.10",
"versionStartIncluding": "9.6.0.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
"matchCriteriaId": "34F73334-874F-4D04-A0F1-BA9A5C505BAB",
"versionEndExcluding": "9.10.1.3",
"versionStartIncluding": "9.8.0.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
"matchCriteriaId": "E943ABD7-89C5-4B3C-A6F5-60CF6AF1A121",
"versionEndExcluding": "9.12.0.0",
"versionStartIncluding": "9.11.0.0",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]