CVE-2025-22399

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
11/02/2025
Last modified:
06/12/2025

Description

Dell UCC Edge, version 2.3.0, contains a Blind SSRF on Add Customer SFTP Server vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Server-side request forgery

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:utility_configuration_collector_edge:2.3.0:*:*:*:*:*:*:*