CVE-2025-23374: High severity dell networking switches vulnerability
Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23374?
CVE-2025-23374 is classified as a high-severity vulnerability due to the potential for information exposure by a privileged attacker.
How do I fix CVE-2025-23374?
To fix CVE-2025-23374, upgrade your Dell Networking Switches to Enterprise SONiC OS version 4.4.1 or 4.2.3 or later.
What types of information could be exposed in CVE-2025-23374?
CVE-2025-23374 could allow an attacker to access sensitive information logged by the affected software.
Who is affected by CVE-2025-23374?
CVE-2025-23374 affects Dell Networking Switches running Enterprise SONiC OS versions earlier than 4.4.1 and 4.2.3.
Can CVE-2025-23374 be exploited remotely?
Yes, CVE-2025-23374 can be exploited remotely by a high-privileged attacker with access to the affected devices.