CNNVD-202512-1226 Information

CNNVD ID

CNNVD-202512-1226

CVE-2025-46637

  • CNNVD Published: 2025-12-09

Description (Chinese)

Dell Encryption是美国戴尔(Dell)公司的一套数据保护解决方案。该产品包括合规性管理、身份验证、磁盘数据加密和端口加密等功能。 Dell Encryption 11.12.1之前版本存在后置链接漏洞,该漏洞源于文件访问前链接解析不当,可能导致权限提升。

Description (English)

Dell Encryption is a data protection solution for Dell in the United States. The product includes compliance management, authentication, disk data encryption and port encryption. There is a backlink loophole in the pre-Dell Encryption 11.12.1 version, which arises from the inappropriate analysis of the link before the document is accessed, which may lead to an increase in privileges.

Hazard Level

Medium

Vulnerability Type

后置链接

Affected Vendor

戴尔

Published

2025-12-09

Last Modified

2026-02-24

References

https://www.dell.com/support/kbdoc/en-us/000394657/dsa-2025-442

Patch

https://www.dell.com/support/kbdoc/en-us/000394657/dsa-2025-442

Share on: