CVE-2025-36601 MEDIUM

CVE-2025-36601

Vendor Dell
Product PowerScale OneFS
Weakness CWE-200 · Info exposure
Published September 25, 2025
Last update September 25, 2025

CVSS base score

4.0/10
Attack vector Network
Attack complexity High
Privileges required None
User interaction None
Confidentiality Low
Integrity None

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N

What the vulnerability does

01Description

Dell PowerScale OneFS, versions 9.5.0.0 through 9.11.0.0, contains an exposure of sensitive information to an unauthorized actor vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to Information disclosure.

Key dates

02Disclosure timeline

September 25, 2025 CVE published
September 25, 2025 Record updated