CVE-2025-36572: Dell Powerstoreos

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Dell PowerStore, version(s) 4.0.0.0, contain(s) an Use of Hard-coded Credentials vulnerability in the PowerStore image file. A low privileged attacker with remote access, with the knowledge of the hard-coded credentials, could potentially exploit this vulnerability to gain unauthorized access based on the hardcoded account's privileges.

Affected products

  • Dell Powerstoreos: before 4.0.1.3 (fixed in 4.0.1.3)

Published 2025-05-28. Last modified 2026-09-11.