← volver
CVE-2025-43724

CVE-2025-43724

CVSS 4.4 MEDIUMEPSS 0.1%CWE-639
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 4.4EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
08 oct 2025Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an authorization bypass through user-controlled key vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability to gain unauthorized access to NFSv4 or SMB shares.
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Productos afectados
Dell · PowerScale OneFS