CVE Vulnerabilities

CVE-2025-43888

Insertion of Sensitive Information into Log File

Published: Sep 10, 2025 | Modified: Oct 20, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Dell PowerProtect Data Manager, Hyper-V, version(s) 19.19 and 19.20, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.

Weakness

The product writes sensitive information to a log file.

Affected Software

Name Vendor Start Version End Version
Powerprotect_data_manager Dell * 19.21 (excluding)

Potential Mitigations

References