CVE-2025-21111

Severity CVSS v4.0:
Pending analysis
Type:
CWE-256 Plaintext Storage of a Password
Publication date:
08/01/2025
Last modified:
24/01/2025

Description

Dell VxRail, versions 8.0.000 through 8.0.311, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:vxrail_d560_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_d560:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_d560f_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_d560f:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_e460_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_e460:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_e560_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_e560:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_e560_vcf_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_e560_vcf:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_e560f_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_e560f:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_e560f_vcf_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)
cpe:2.3:h:dell:vxrail_e560f_vcf:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:vxrail_e560n_firmware:*:*:*:*:*:*:*:* 8.0.000 (including) 8.320 (excluding)