CVE-2025-22474
Severity CVSS v4.0:
Pending analysis
Type:
CWE-918
Server-Side Request Forgery (SSRF)
Publication date:
17/03/2025
Last modified:
14/07/2025
Description
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) a Server-Side Request Forgery (SSRF) vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Server-side request forgery.
Impact
Base Score 3.x
6.80
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:dell:smartfabric_os10:*:*:*:*:*:*:*:* | 10.5.4.0 (including) | 10.5.4.14 (excluding) |
| cpe:2.3:o:dell:smartfabric_os10:*:*:*:*:*:*:*:* | 10.5.5.0 (including) | 10.5.5.13 (excluding) |
| cpe:2.3:o:dell:smartfabric_os10:*:*:*:*:*:*:*:* | 10.5.6.0 (including) | 10.5.6.8 (excluding) |
| cpe:2.3:o:dell:smartfabric_os10:*:*:*:*:*:*:*:* | 10.6.0.0 (including) | 10.6.0.2 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://www.dell.com/support/kbdoc/en-us/000289970/dsa-2025-070-security-update-for-dell-networking-os10-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000293638/dsa-2025-069-security-update-for-dell-networking-os10-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000294091/dsa-2025-079-security-update-for-dell-networking-os10-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000295014/dsa-2025-068-security-update-for-dell-networking-os10-vulnerabilities



