7.5

CVE-2025-21102

Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DellVxrail D560 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail D560 Version-
DellVxrail D560f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail D560f Version-
DellVxrail E460 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E460 Version-
DellVxrail E560 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E560 Version-
DellVxrail E560 Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E560 Vcf Version-
DellVxrail E560f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E560f Version-
DellVxrail E560f Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E560f Vcf Version-
DellVxrail E560n Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E560n Version-
DellVxrail E560n Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E560n Vcf Version-
DellVxrail E660 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E660 Version-
DellVxrail E660f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E660f Version-
DellVxrail E660n Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E660n Version-
DellVxrail E665 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E665 Version-
DellVxrail E665f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E665f Version-
DellVxrail E665n Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail E665n Version-
DellVxrail G560 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail G560 Version-
DellVxrail G560 Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail G560 Vcf Version-
DellVxrail G560f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail G560f Version-
DellVxrail P470 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P470 Version-
DellVxrail P570 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P570 Version-
DellVxrail P570 Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P570 Vcf Version-
DellVxrail P570f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P570f Version-
DellVxrail P570f Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P570f Vcf Version-
DellVxrail P580n Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P580n Version-
DellVxrail P580n Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P580n Vcf Version-
DellVxrail P670f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P670f Version-
DellVxrail P670n Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P670n Version-
DellVxrail P675f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P675f Version-
DellVxrail P675n Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail P675n Version-
DellVxrail S470 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail S470 Version-
DellVxrail S570 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail S570 Version-
DellVxrail S570 Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail S570 Vcf Version-
DellVxrail S670 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail S670 Version-
DellVxrail V470 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail V470 Version-
DellVxrail V570 Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail V570 Version-
DellVxrail V570 Vcf Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail V570 Vcf Version-
DellVxrail V670f Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail V670f Version-
DellVxrail Vd-4000r Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail Vd-4000r Version-
DellVxrail Vd-4000w Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail Vd-4000w Version-
DellVxrail Vd-4000z Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail Vd-4000z Version-
DellVxrail Vd-4510c Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail Vd-4510c Version-
DellVxrail Vd-4520c Firmware Version >= 7.0.000 < 7.0.533
   DellVxrail Vd-4520c Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.044
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.4 0.8 3.6
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
security_alert@emc.com 7.5 0.8 6
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
CWE-256 Plaintext Storage of a Password

Storing a password in plaintext may result in a system compromise.

CWE-522 Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.