CVE-2025-21102

MEDIUMCVSS 4.4/10EPSS 0.16%

Last modified

CVE-2025-21102 is a medium-severity vulnerability rated 4.4/10 on the CVSS scale. Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.. EPSS estimates a 0.16% chance of exploitation in the next 30 days.

Description

Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.

Metrics

CVSS 3.1
4.4/10

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
0.16%

5.7th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
DellVxrail D560 Firmware>= 7.0.000, < 7.0.533
DellVxrail D560f Firmware>= 7.0.000, < 7.0.533
DellVxrail E460 Firmware>= 7.0.000, < 7.0.533
DellVxrail E560 Firmware>= 7.0.000, < 7.0.533
DellVxrail E560 Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail E560f Firmware>= 7.0.000, < 7.0.533
DellVxrail E560f Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail E560n Firmware>= 7.0.000, < 7.0.533
DellVxrail E560n Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail E660 Firmware>= 7.0.000, < 7.0.533
DellVxrail E660f Firmware>= 7.0.000, < 7.0.533
DellVxrail E660n Firmware>= 7.0.000, < 7.0.533
DellVxrail E665 Firmware>= 7.0.000, < 7.0.533
DellVxrail E665f Firmware>= 7.0.000, < 7.0.533
DellVxrail E665n Firmware>= 7.0.000, < 7.0.533
DellVxrail G560 Firmware>= 7.0.000, < 7.0.533
DellVxrail G560 Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail G560f Firmware>= 7.0.000, < 7.0.533
DellVxrail P470 Firmware>= 7.0.000, < 7.0.533
DellVxrail P570 Firmware>= 7.0.000, < 7.0.533
DellVxrail P570 Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail P570f Firmware>= 7.0.000, < 7.0.533
DellVxrail P570f Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail P580n Firmware>= 7.0.000, < 7.0.533
DellVxrail P580n Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail P670f Firmware>= 7.0.000, < 7.0.533
DellVxrail P670n Firmware>= 7.0.000, < 7.0.533
DellVxrail P675f Firmware>= 7.0.000, < 7.0.533
DellVxrail P675n Firmware>= 7.0.000, < 7.0.533
DellVxrail S470 Firmware>= 7.0.000, < 7.0.533
DellVxrail S570 Firmware>= 7.0.000, < 7.0.533
DellVxrail S570 Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail S670 Firmware>= 7.0.000, < 7.0.533
DellVxrail V470 Firmware>= 7.0.000, < 7.0.533
DellVxrail V570 Firmware>= 7.0.000, < 7.0.533
DellVxrail V570 Vcf Firmware>= 7.0.000, < 7.0.533
DellVxrail V670f Firmware>= 7.0.000, < 7.0.533
DellVxrail Vd-4000r Firmware>= 7.0.000, < 7.0.533
DellVxrail Vd-4000w Firmware>= 7.0.000, < 7.0.533
DellVxrail Vd-4000z Firmware>= 7.0.000, < 7.0.533
DellVxrail Vd-4510c Firmware>= 7.0.000, < 7.0.533
DellVxrail Vd-4520c Firmware>= 7.0.000, < 7.0.533

References

Timeline

Published
Last Modified
Status
Analyzed

Frequently Asked Questions

What is CVE-2025-21102?
Dell VxRail, versions 7.0.000 through 7.0.532, contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
How severe is CVE-2025-21102?
CVE-2025-21102 has a CVSS score of 4.4/10 (MEDIUM severity). The EPSS model estimates a 0.16% probability of exploitation in the next 30 days.
How do I fix CVE-2025-21102?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2025-21102?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST