CVE-2025-36595

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/06/2025
Last modified:
14/01/2026

Description

Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:solutions_enabler_virtual_appliance:*:*:*:*:*:*:*:* 9.2.4.0 (including) 9.2.4.11 (excluding)
cpe:2.3:a:dell:unisphere_for_powermax_virtual_appliance:*:*:*:*:*:*:*:* 9.2.4.0 (including) 9.2.4.17 (excluding)