CVE-2025-26483 MEDIUM

CVE-2025-26483

Vendor Dell
Product PowerFlex Manager (Appliance)
Weakness CWE-601 · Open redirect
Published May 22, 2026
Last update May 22, 2026

CVSS base score

6.1/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction Required
Confidentiality Low
Integrity Low

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

What the vulnerability does

01Description

Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.

Key dates

02Disclosure timeline

May 22, 2026 CVE published
May 22, 2026 Record updated