PT-2025-24899 · Dell · Dell Wyse Management Suite

Published

2025-06-10

·

Updated

2025-06-11

·

CVE-2025-36577

CVSS v2.0

8.5

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:N
Name of the Vulnerable Software and Affected Versions Dell Wyse Management Suite versions prior to 5.2
Description The issue is related to an Improper Neutralization of Input During Web Page Generation, also known as Cross-site Scripting. This could allow a high-privileged attacker with remote access to potentially exploit the issue, leading to script injection.
Recommendations For versions prior to 5.2, update to version 5.2 or later to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

BDU:2025-07631
CVE-2025-36577

Affected Products

Dell Wyse Management Suite