First published: Fri Apr 11 2025(Updated: )
Dell PowerProtect Cyber Recovery, versions prior to 19.18.0.2, contains an Insertion of Sensitive Information Into Sent Data vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
Affected Software | Affected Version | How to fix |
---|---|---|
Dell PowerProtect | <19.18.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26335 is classified as a high severity vulnerability due to the potential for information exposure by a high privileged attacker.
To remediate CVE-2025-26335, upgrade Dell PowerProtect Cyber Recovery to version 19.18.0.2 or later.
CVE-2025-26335 is characterized as an Insertion of Sensitive Information Into Sent Data vulnerability.
CVE-2025-26335 affects users of Dell PowerProtect Cyber Recovery versions prior to 19.18.0.2.
Exploiting CVE-2025-26335 could lead to unauthorized information exposure for systems using affected software.