Aller au contenu

Fiche vulnérabilité

CVE-2025-21104 : faille moyenne dell networker (CVSS 6.5)

Description

Dell NetWorker, versions prior to 19.11.0.4 and version 19.12, contains an URL Redirection to Untrusted Site ('Open Redirect') Vulnerability in NetWorker Management Console. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.

En bref

Sévérité
Moyenne (CVSS 6.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
13 mars 2025
Dernière mise à jour
17 juin 2026

Produits concernés

  • dell networker

Références

Rechercher une autre vulnérabilité dans la base CVE