PT-2025-11167 · Dell · Dell Networker

CVE-2025-21104

·

Published

2025-03-13

·

Updated

2025-08-18

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Dell NetWorker versions 19.11.0.3 and below
Description: The issue is an Open Redirect Vulnerability in NMC, which could allow an unauthenticated attacker with remote access to redirect a targeted application user to arbitrary web URLs. This could be used to conduct phishing attacks, causing users to divulge sensitive information.
Recommendations: For versions 19.11.0.3 and below, update to a version above 19.11.0.3 to resolve the issue. As a temporary workaround, consider restricting access to the NMC component to minimize the risk of exploitation.

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-07191
CVE-2025-21104

Affected Products

Dell Networker