CVE-2025-36574

Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Absolute Path Traversal vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure and Unauthorized access.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:wyse_management_suite:*:*:*:*:*:*:*:*

History

11 Jul 2025, 15:25

Type Values Removed Values Added
First Time Dell wyse Management Suite
Dell
CPE cpe:2.3:a:dell:wyse_management_suite:*:*:*:*:*:*:*:*
References () https://www.dell.com/support/kbdoc/en-us/000325679/dsa-2025-226 - () https://www.dell.com/support/kbdoc/en-us/000325679/dsa-2025-226 - Vendor Advisory

12 Jun 2025, 16:06

Type Values Removed Values Added
Summary
  • (es) Dell Wyse Management Suite, versiones anteriores a WMS 5.2, contiene una vulnerabilidad de Path Traversal absoluto. Un atacante no autenticado con acceso remoto podría explotar esta vulnerabilidad, lo que provocaría la divulgación de información y el acceso no autorizado.

10 Jun 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-10 18:15

Updated : 2025-07-11 15:25


NVD link : CVE-2025-36574

Mitre link : CVE-2025-36574

CVE.ORG link : CVE-2025-36574


JSON object : View

Products Affected

dell

  • wyse_management_suite
CWE
CWE-36

Absolute Path Traversal