CVE-2025-38745
BaseFortify
Publication date: 2025-08-14
Last updated on: 2025-08-19
Assigner: Dell
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| dell | openmanage_enterprise | 3.10 |
| dell | openmanage_enterprise | 4.0 |
| dell | openmanage_enterprise | 4.1.0 |
| dell | openmanage_enterprise | 4.2.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-532 | The product writes sensitive information to a log file. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in Dell OpenManage Enterprise versions 3.10, 4.0, 4.1, and 4.2. It involves the insertion of sensitive information into log files within the Backup and Restore functionality. A low privileged attacker with remote access could exploit this issue, potentially leading to exposure of sensitive information.
How can this vulnerability impact me? :
The vulnerability can lead to information exposure, meaning that sensitive data could be accessed by unauthorized users. This could compromise confidentiality and potentially lead to further security risks depending on the nature of the exposed information.