Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.
History

Tue, 26 May 2026 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Dell powerflex Appliance Intelligent Catalog
Dell powerflex Rack
CPEs cpe:2.3:a:dell:powerflex_appliance_intelligent_catalog:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerflex_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerflex_rack:*:*:*:*:*:*:*:*
Vendors & Products Dell powerflex Appliance Intelligent Catalog
Dell powerflex Rack

Fri, 22 May 2026 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 22 May 2026 15:30:00 +0000

Type Values Removed Values Added
Title Open Redirect in Dell PowerFlex Manager Enabling Phishing
First Time appeared Dell
Dell powerflex Manager
Dell powerflex Manager Appliance
Dell powerflex Manager Rack
Vendors & Products Dell
Dell powerflex Manager
Dell powerflex Manager Appliance
Dell powerflex Manager Rack

Fri, 22 May 2026 13:45:00 +0000

Type Values Removed Values Added
Description Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.
Weaknesses CWE-601
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2026-05-22T13:33:26.092Z

Updated: 2026-05-22T17:22:06.195Z

Reserved: 2025-02-11T06:06:12.147Z

Link: CVE-2025-26483

cve-icon Vulnrichment

Updated: 2026-05-22T17:22:00.486Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-22T14:16:24.027

Modified: 2026-05-22T20:48:54.350

Link: CVE-2025-26483

cve-icon Redhat

No data.