PT-2025-7539 · Dell · Dell Recoverpoint For Virtual Machines

Published

2025-02-20

·

Updated

2025-07-31

·

CVE-2025-21106

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell Recover Point for Virtual Machines version 6.0.X
Description The issue is related to weak file system permissions. A low-privileged local attacker could potentially exploit this, impacting only non-sensitive resources in the system.
Recommendations For version 6.0.X, consider restricting access to sensitive areas of the file system as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

BDU:2025-07190
CVE-2025-21106

Affected Products

Dell Recoverpoint For Virtual Machines