Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-23376


Dell PowerProtect Data Manager Reporting, version(s) 19.16, 19.17, 19.18, contain(s) an Improper Neutralization of Special Elements Used in a Template Engine vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to information disclosure.


Published

2025-04-28T15:15:45.303

Last Modified

2025-05-13T13:25:04.360

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 2.3 (LOW)

Weaknesses
  • Type: Primary
    CWE-1336
  • Type: Primary
    CWE-94

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application dell powerprotect_data_manager 19.16 Yes
Application dell powerprotect_data_manager 19.17 Yes
Application dell powerprotect_data_manager 19.18 Yes

References