CVE-2025-32748: Dell Powerflex Rack Release Certification Matrix

Medium severity, CVSS 6.1. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell PowerFlex Manager, version(s) prior to 5.1.0.1, contain(s) a Host Header Injection vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability to trigger redirections.

Affected products

  • Dell Powerflex Rack Release Certification Matrix: before 3.8.4.1 (fixed in 3.8.4.1); from 3.9.0.0, before 3.9.1.1 (fixed in 3.9.1.1)

Published 2026-06-17. Last modified 2026-10-06.