Dell PowerProtect Data Manager, version(s) 19.19 and 19.20, Hyper-V contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to gain unauthorized access with privileges of the compromised account.
Metrics
Affected Vendors & Products
References
History
Mon, 20 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:* |
Thu, 11 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell powerprotect Data Manager |
|
| Vendors & Products |
Dell
Dell powerprotect Data Manager |
Wed, 10 Sep 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 10 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell PowerProtect Data Manager, version(s) 19.19 and 19.20, Hyper-V contain(s) a Plaintext Storage of a Password vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to gain unauthorized access with privileges of the compromised account. | |
| Weaknesses | CWE-256 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published: 2025-09-10T16:03:38.951Z
Updated: 2025-09-10T18:04:13.097Z
Reserved: 2025-04-20T05:04:01.415Z
Link: CVE-2025-43938
Updated: 2025-09-10T18:04:09.566Z
Status : Analyzed
Published: 2025-09-10T16:15:38.050
Modified: 2025-10-20T14:02:23.670
Link: CVE-2025-43938
No data.