CVE-2025-26512: Privilege Escalation Vulnerability in SnapCenter
SnapCenter versions prior to 6.0.1P1 and 6.1P1 are susceptible to a vulnerability which may allow an authenticated SnapCenter Server user to become an admin user on a remote system where a SnapCenter plug-in has been installed.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
SnapCenterto a version that resolves this vulnerability.Fixed in 6.0.1P1 - Upgrade
Upgrade
SnapCenterto a version that resolves this vulnerability.Fixed in 6.1P1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26512?
CVE-2025-26512 has a high severity rating due to its potential to allow unauthorized elevation of privileges.
How do I fix CVE-2025-26512?
To fix CVE-2025-26512, upgrade to SnapCenter version 6.0.1P1 or 6.1P1 or later.
Who is affected by CVE-2025-26512?
CVE-2025-26512 affects SnapCenter versions prior to 6.0.1P1 and 6.1P1.
What type of vulnerability is CVE-2025-26512?
CVE-2025-26512 is an authenticated privilege escalation vulnerability in SnapCenter.
Can I be attacked through CVE-2025-26512 remotely?
Yes, CVE-2025-26512 can potentially allow an authenticated SnapCenter Server user to gain admin access to a remote system.