DSA-2025-314: Security Update for Dell OpenManage Enterprise Vulnerability
Summary: Dell OpenManage Enterprise remediation is available for an Insertion of Sensitive Information into Log File vulnerability that could be exploited by malicious users to compromise the affected system. ...
Impact
Medium
Details
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2025-38745 |
Dell OpenManage Enterprise, versions 3.10, 4.0, 4.1, and 4.2, contains an Insertion of Sensitive Information into Log File vulnerability in the Backup and Restore. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure. |
4.8 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2025-38745 |
Dell OpenManage Enterprise, versions 3.10, 4.0, 4.1, and 4.2, contains an Insertion of Sensitive Information into Log File vulnerability in the Backup and Restore. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure. |
4.8 |
Affected Products & Remediation
|
Product |
Affected Versions |
Remediated Versions |
Link |
|
Dell OpenManage Enterprise |
Versions 3.10, 4.0, 4.1, and 4.2 |
Version 4.3 or later |
Dell OpenManage Enterprise version 4.3.2 | Driver Details | Dell US |
|
Product |
Affected Versions |
Remediated Versions |
Link |
|
Dell OpenManage Enterprise |
Versions 3.10, 4.0, 4.1, and 4.2 |
Version 4.3 or later |
Dell OpenManage Enterprise version 4.3.2 | Driver Details | Dell US |
The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Revision History
|
Revision |
Date |
Description |
|
1.0 |
2025-08-13 |
Initial Release |