← back
CVE-2025-43938

CVE-2025-43938

CVSS 5 MEDIUMEPSS 0.1%CWE-256
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
10 Sep 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Dell PowerProtect Data Manager, version(s) 19.19 and 19.20, Hyper-V contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to gain unauthorized access with privileges of the compromised account.
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:N/A:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →