Vulnerability Description
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information tampering.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Powerflex Appliance Intelligent Catalog | < 48.383.00 |
| Dell | Powerflex Manager | <= 4.6.2 |
| Dell | Powerflex Rack | < 3.7.8.0 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/en-us/000391392/dsa-2025-434-security-update-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000391568/dsa-2025-435-security-update-Vendor Advisory
FAQ
What is CVE-2025-32745?
CVE-2025-32745 is a vulnerability with a CVSS score of 4.2 (MEDIUM). Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnera...
How severe is CVE-2025-32745?
CVE-2025-32745 has been rated MEDIUM with a CVSS base score of 4.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-32745?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Powerflex Appliance Intelligent Catalog, Dell Powerflex Manager, Dell Powerflex Rack.