CVE-2025-36601: Infoleak
Published Sep 25, 2025
·Updated
Dell PowerScale OneFS, versions 9.5.0.0 through 9.11.0.0, contains an exposure of sensitive information to an unauthorized actor vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to Information disclosure.
Affected Software
5 affected components
Dell PowerScale OneFS>=9.5.0.0<=9.11.0.0
Dell PowerScale OneFS>=9.8.0.0<9.10.1.3
Dell PowerScale OneFS>=9.5.0.0<9.5.1.4
Dell PowerScale OneFS>=9.6.0<9.7.1.10
Dell PowerScale OneFS=9.11.0.0
Event History
Sep 25, 2025
CVE Published
via MITRE·02:54 PM
Data Sourced
via MITRE·02:54 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-36601?
CVE-2025-36601 is classified as a vulnerability that could lead to sensitive information exposure.
2
How do I fix CVE-2025-36601?
To fix CVE-2025-36601, upgrade Dell PowerScale OneFS to a version beyond 9.11.0.0.
3
What versions of Dell PowerScale OneFS are affected by CVE-2025-36601?
CVE-2025-36601 affects Dell PowerScale OneFS versions from 9.5.0.0 to 9.11.0.0.
4
Who can be affected by CVE-2025-36601?
CVE-2025-36601 can potentially affect users of Dell PowerScale OneFS as it exposes sensitive information to unauthorized actors.
5
Can CVE-2025-36601 be exploited remotely?
Yes, CVE-2025-36601 can be exploited by an unauthenticated remote attacker.