MEDIUM
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Privilege Management vulnerability
Published Mar 17, 2025
5.5
MEDIUMCVSS 3.1
EPSS 0.16%
Description
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Privilege Management vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.
Affected products
-
Affected
- 10.5.4.x
- 10.5.5.x
- 10.5.6.x
- 10.6.0.x
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Dell | SmartFabric OS10 Software | unaffected | Affected
|
OR
- ≥ 10.5.4.0 · < 10.5.4.14
- ≥ 10.5.5.0 · < 10.5.5.13
- ≥ 10.5.6.0 · < 10.5.6.8
- ≥ 10.6.0.0 · < 10.6.0.2
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-6542 Advisory
- https://www.dell.com/support/kbdoc/en-us/000289970/dsa-2025-070-security-update-for-dell-networking-os10-vulnerabilities vendor-advisoryVendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000293638/dsa-2025-069-security-update-for-dell-networking-os10-vulnerabilities vendor-advisoryVendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000294091/dsa-2025-079-security-update-for-dell-networking-os10-vulnerabilities vendor-advisoryVendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000295014/dsa-2025-068-security-update-for-dell-networking-os10-vulnerabilities vendor-advisoryVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-6542 | Advisory | |
| https://www.dell.com/support/kbdoc/en-us/000289970/dsa-2025-070-security-update-for-dell-networking-os10-vulnerabilities | vendor-advisoryVendor Advisory | |
| https://www.dell.com/support/kbdoc/en-us/000293638/dsa-2025-069-security-update-for-dell-networking-os10-vulnerabilities | vendor-advisoryVendor Advisory | |
| https://www.dell.com/support/kbdoc/en-us/000294091/dsa-2025-079-security-update-for-dell-networking-os10-vulnerabilities | vendor-advisoryVendor Advisory | |
| https://www.dell.com/support/kbdoc/en-us/000295014/dsa-2025-068-security-update-for-dell-networking-os10-vulnerabilities | vendor-advisoryVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner dell
Published Mar 17, 2025
Updated Mar 17, 2025
Reserved Oct 8, 2024
Link CVE-2024-48828
CISA Vulnrichment
Updated Mar 17, 2025
Red Hat
No data
GitHub
No data