CVE-2025-32750
Analyzed Analyzed - Analysis Complete

Exposure of Information Through Directory Listing in Dell PowerFlex Manager

Vulnerability report for CVE-2025-32750, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-05-20

Last updated on: 2026-06-02

Assigner: Dell

Description

Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-05-20
Last Modified
2026-06-02
Generated
2026-06-30
AI Q&A
2026-05-20
EPSS Evaluated
2026-06-28
NVD
EUVD

Affected Vendors & Products

Showing 3 associated CPEs
Vendor Product Version / Range
dell powerflex_manager to 4.6.2 (inc)
dell powerflex_rack to 3.7.8.0 (exc)
dell powerflex_appliance_intelligent_catalog to 48.383.00 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-548 The product inappropriately exposes a directory listing with an index of all the resources located inside of the directory.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

Dell PowerFlex Manager versions up to 4.6.2 have a vulnerability where an unauthenticated attacker with remote access can exploit directory listing to expose information.

Impact Analysis

This vulnerability can lead to the exposure of sensitive information without requiring authentication, potentially allowing attackers to access data they should not see.

Compliance Impact

This vulnerability in Dell PowerFlex Manager allows an unauthenticated remote attacker to expose information through directory listing. Such exposure of sensitive information could potentially lead to non-compliance with data protection regulations like GDPR and HIPAA, which require the protection of personal and sensitive data from unauthorized access.

However, specific impacts on compliance depend on the nature of the exposed information and the organization's overall security controls.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-32750. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart