Description

Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access to data and resources outside of the intended sphere of control.

INFO

Published Date :

2026-01-06T16:20:24.899Z

Last Modified :

2026-01-06T16:55:17.429Z

Source :

dell
AFFECTED PRODUCTS

The following products are affected by CVE-2025-36589 vulnerability.

Vendors Products
Dell
  • Unisphere For Powermax
  • Unisphere For Powermax Virtual Appliance

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact