CVE-2025-36572

Dell PowerStore, version(s) 4.0.0.0, contain(s) an Use of Hard-coded Credentials vulnerability in the PowerStore image file. A low privileged attacker with remote access, with the knowledge of the hard-coded credentials, could potentially exploit this vulnerability to gain unauthorized access based on the hardcoded account's privileges.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:powerstoreos:*:*:*:*:*:*:*:*
OR cpe:2.3:h:dell:powerstore_1000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_1200t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_3000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_3200q:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_3200t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_5000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_500t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_5200t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_7000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_9000t:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerstore_9200t:-:*:*:*:*:*:*:*

History

09 Jun 2025, 18:58

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-28 17:15

Updated : 2025-06-09 18:58


NVD link : CVE-2025-36572

Mitre link : CVE-2025-36572

CVE.ORG link : CVE-2025-36572


JSON object : View

Products Affected

dell

  • powerstore_7000t
  • powerstore_3200t
  • powerstore_5000t
  • powerstore_3200q
  • powerstore_5200t
  • powerstore_9000t
  • powerstore_9200t
  • powerstoreos
  • powerstore_1000t
  • powerstore_500t
  • powerstore_1200t
  • powerstore_3000t
CWE
CWE-798

Use of Hard-coded Credentials