Vulnerability Description
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Powerflex Appliance Intelligent Catalog | < 48.383.00 |
| Dell | Powerflex Manager | <= 4.6.2 |
| Dell | Powerflex Rack | < 3.7.8.0 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/en-us/000391392/dsa-2025-434-security-update-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000391568/dsa-2025-435-security-update-Vendor Advisory
FAQ
What is CVE-2025-32749?
CVE-2025-32749 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Exposure of Information Through Directory Listing vulnerability. An unauthenticated attacker with remote access could potentially exploit this...
How severe is CVE-2025-32749?
CVE-2025-32749 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-32749?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Powerflex Appliance Intelligent Catalog, Dell Powerflex Manager, Dell Powerflex Rack.