216.73.216.233

CVE-2025-43937

· Published 16/04/2026 19:16 · Modified 17/04/2026 15:14

Labels: CVE-2025-43937 2026-04-16CVE-2025-43937CWE-532[email protected]

Essential information

Published
16/04/2026 19:16
Modified
17/04/2026 15:14
Author
Creator
CVSS
6.6 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H

CVSS metrics

Description

Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an insertion of sensitive information into log file vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

NVD status

Status
Undergoing Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
dell / powerscale onefs cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*

References