CVE-2019-18576: Dell Xtremio Management Server

Medium severity, CVSS 6.7. EPSS: 0.3% chance of exploitation in the next 30 days.

Dell EMC XtremIO XMS versions prior to 6.3.0 contain an information disclosure vulnerability where OS users’ passwords are logged in local files. Malicious local users with access to the log files may use the exposed passwords to gain access to XtremIO with the privileges of the compromised user.

Affected products

  • Dell Xtremio Management Server: before 6.3.0 (fixed in 6.3.0)

Published 2020-03-13. Last modified 2026-06-17.