PT-2025-11167 · Dell · Dell Networker
Published
2025-03-13
·
Updated
2025-08-18
·
CVE-2025-21104
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Dell NetWorker versions 19.11.0.3 and below
Description:
The issue is an Open Redirect Vulnerability in NMC, which could allow an unauthenticated attacker with remote access to redirect a targeted application user to arbitrary web URLs. This could be used to conduct phishing attacks, causing users to divulge sensitive information.
Recommendations:
For versions 19.11.0.3 and below, update to a version above 19.11.0.3 to resolve the issue. As a temporary workaround, consider restricting access to the NMC component to minimize the risk of exploitation.
Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Networker