Dell PowerStore, version(s) 4.0.0.0, contain(s) an Use of Hard-coded Credentials vulnerability in the PowerStore image file. A low privileged attacker with remote access, with the knowledge of the hard-coded credentials, could potentially exploit this vulnerability to gain unauthorized access based on the hardcoded account's privileges.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Jun 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Dell
Dell powerstore 1000t Dell powerstore 1200t Dell powerstore 3000t Dell powerstore 3200q Dell powerstore 3200t Dell powerstore 5000t Dell powerstore 500t Dell powerstore 5200t Dell powerstore 7000t Dell powerstore 9000t Dell powerstore 9200t Dell powerstoreos |
|
CPEs | cpe:2.3:h:dell:powerstore_1000t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_1200t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_3000t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_3200q:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_3200t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_5000t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_500t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_5200t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_7000t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_9000t:-:*:*:*:*:*:*:* cpe:2.3:h:dell:powerstore_9200t:-:*:*:*:*:*:*:* cpe:2.3:o:dell:powerstoreos:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Dell
Dell powerstore 1000t Dell powerstore 1200t Dell powerstore 3000t Dell powerstore 3200q Dell powerstore 3200t Dell powerstore 5000t Dell powerstore 500t Dell powerstore 5200t Dell powerstore 7000t Dell powerstore 9000t Dell powerstore 9200t Dell powerstoreos |
Wed, 28 May 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 28 May 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Dell PowerStore, version(s) 4.0.0.0, contain(s) an Use of Hard-coded Credentials vulnerability in the PowerStore image file. A low privileged attacker with remote access, with the knowledge of the hard-coded credentials, could potentially exploit this vulnerability to gain unauthorized access based on the hardcoded account's privileges. | |
Weaknesses | CWE-798 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: dell
Published: 2025-05-28T16:14:20.913Z
Updated: 2025-05-28T16:26:34.111Z
Reserved: 2025-04-15T21:29:33.585Z
Link: CVE-2025-36572

Updated: 2025-05-28T16:26:26.393Z

Status : Analyzed
Published: 2025-05-28T17:15:24.093
Modified: 2025-06-09T18:58:23.397
Link: CVE-2025-36572

No data.