CVE-2025-21120: Dell Avamar
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Dell Avamar, versions prior to 19.10 SP1 with patch 338904, contains a Trusting HTTP Permission Methods on the Server-Side vulnerability in Security. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
Affected products
- Dell Avamar: version 19.4 only; version 19.7 only; version 19.8 only; version 19.9 only; version 19.10 only; version 19.12 only
Published 2025-08-04. Last modified 2026-06-17.