CVE-2025-26483
CVSS Score
6.1
EPSS Score
0.0%
EPSS Percentile
0th
Dell PowerFlex Manager, versions 4.6.2 and prior, contains an Open Redirect Vulnerability. An unauthenticated attacker could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information.
| CWE | CWE-601 |
| Vendor | dell |
| Product | powerflex manager (appliance) |
| Published | May 22, 2026 |
| Last Updated | May 22, 2026 |
Stay Ahead of the Next One
Get instant alerts for dell powerflex manager (appliance)
Be the first to know when new medium vulnerabilities affecting dell powerflex manager (appliance) are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
Affected Versions
Dell / PowerFlex Manager (Appliance)
0 < IC 48.378.00 0 < IC 48.383.00
Dell / PowerFlex Manager (Rack)
0 < 3.7.8.0 0 < 3.8.3.0
Dell / PowerFlex Manager
0 โค 4.6.2
References
dell.com: https://www.dell.com/support/kbdoc/en-us/000391568/dsa-2025-435-security-update-for-dell-powerflex-rack-multiple-third-party-component-vulnerabilities dell.com: https://www.dell.com/support/kbdoc/en-us/000391392/dsa-2025-434-security-update-for-dell-powerflex-appliance-multiple-third-party-component-vulnerabilities