CVE-2025-36595 Information

Description

Dell Unisphere for PowerMax vApp version(s) 9.2.4.x contain(s) an Improper Neutralization of Directives in Statically Saved Code (‘Static Code Injection’) vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability leading to Code execution.

Reference

https://www.dell.com/support/kbdoc/en-us/000337554/dsa-2025-235-dell-powermaxos-dell-powermax-eem-dell-unisphere-for-powermax-dell-unisphere-for-powermax-virtual-appliance-dell-unisphere-360-dell-solutions-enabler-and-dell-solutions-enabler-virtual-appliance-security-update-for-multiple-vulnerabilit

CNNVD-202506-3525 (Published: 2025-06-27)

Share on: