CVE-2025-30105
BaseFortify
Publication date: 2025-07-30
Last updated on: 2025-07-31
Assigner: Dell
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| dell | xtremio | 6.4.0-22 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-532 | The product writes sensitive information to a log file. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in Dell XtremIO version 6.4.0-22 involves the insertion of sensitive information into log files. A low privileged attacker with local access could exploit this flaw to expose sensitive information, such as credentials, which may then be used to access the application with the privileges of the compromised account.
How can this vulnerability impact me? :
The vulnerability can lead to information exposure, allowing an attacker to obtain sensitive credentials from log files. This could enable unauthorized access to the application with elevated privileges, potentially resulting in data compromise, system manipulation, or further exploitation.