Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3160 | Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure. |
Fri, 07 Feb 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell enterprise Sonic Distribution |
|
| CPEs | cpe:2.3:o:dell:enterprise_sonic_distribution:*:*:*:*:*:*:*:* cpe:2.3:o:dell:enterprise_sonic_distribution:4.4.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dell
Dell enterprise Sonic Distribution |
Thu, 30 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 30 Jan 2025 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure. | |
| Weaknesses | CWE-532 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2025-01-30T15:10:24.732Z
Reserved: 2025-01-15T06:04:03.640Z
Link: CVE-2025-23374
Updated: 2025-01-30T15:10:11.516Z
Status : Analyzed
Published: 2025-01-30T05:15:10.787
Modified: 2025-02-07T20:09:28.717
Link: CVE-2025-23374
No data.
OpenCVE Enrichment
No data.
EUVD