CVE-2025-36572: Medium severity Dell PowerStore vulnerability
Dell PowerStore, version(s) 4.0.0.0, contain(s) an Use of Hard-coded Credentials vulnerability in the PowerStore image file. A low privileged attacker with remote access, with the knowledge of the hard-coded credentials, could potentially exploit this vulnerability to gain unauthorized access based on the hardcoded account's privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36572?
CVE-2025-36572 is classified as a low-severity vulnerability due to the limited privileges required for exploitation.
How do I fix CVE-2025-36572?
To fix CVE-2025-36572, update your Dell PowerStore to the latest firmware version as recommended by Dell.
Who is affected by CVE-2025-36572?
CVE-2025-36572 affects users of Dell PowerStore running version 4.0.0.0.
What type of vulnerability is CVE-2025-36572?
CVE-2025-36572 is an Use of Hard-coded Credentials vulnerability.
Can CVE-2025-36572 be exploited remotely?
Yes, CVE-2025-36572 can potentially be exploited remotely by a low privileged attacker who has knowledge of the hard-coded credentials.