---
cve: "CVE-2025-36574"
severity: "HIGH"
cvss: 8.2
epss: "42%"
vendor: "Dell"
kev: false
exploited: false
published: "2025-06-10 18:15:30"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-15T18:49:19+02:00"
---

# CVE-2025-36574

> 8.2 HIGH

## Beschreibung

Dell Wyse Management Suite, versions prior to WMS 5.2, contain an Absolute Path Traversal vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure and Unauthorized access.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Gering | warn |
| A Verfügbarkeit | Keine | good |

## Referenzen

- <https://www.dell.com/support/kbdoc/en-us/000325679/dsa-2025-226>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2025-36574) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
