PT-2025-11516 · Dell · Os10

Published

2025-01-07

·

Updated

2025-07-15

·

CVE-2025-22474

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell SmartFabric OS10 Software versions 10.5.4.x through 10.6.0.x
Description The issue is a Server-Side Request Forgery (SSRF) vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to server-side request forgery.
Recommendations For versions 10.5.4.x through 10.6.0.x, consider restricting access to the vulnerable component to minimize the risk of exploitation. As a temporary workaround, avoid using any functionality that may trigger the SSRF vulnerability until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Weakness Enumeration

Related Identifiers

BDU:2025-03260
CVE-2025-22474

Affected Products

Os10