CVE-2025-32745 PUBLISHED

Assigner: dell
Reserved: 10.04.2025 Published: 22.05.2026 Updated: 22.05.2026

Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information tampering.

Metrics

CVSS Vector: CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
CVSS Score: 4.2

Product Status

Vendor Dell
Product PowerFlex Manager (Appliance)
Versions Default: unaffected
  • affected from 0 to IC 48.378.00 (excl.)
  • affected from 0 to IC 48.383.00 (excl.)
Vendor Dell
Product PowerFlex Manager (Rack)
Versions Default: unaffected
  • affected from 0 to 3.7.8.0 (excl.)
  • affected from 0 to 3.8.3.0 (excl.)
Vendor Dell
Product PowerFlex Manager
Versions Default: unaffected
  • affected from 0 to 4.6.2 (incl.)

References

Problem Types

  • CWE-295: Improper Certificate Validation CWE