CVE-2025-22478HIGH 8.1EPSS p14.1%
CVE-2025-22478CVE-2025-22478
Description
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure and Information tampering.
Scoring
| CVSS 3.1 | 8.1 (HIGH) |
| Vector | CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
| EPSS | 0.24% probability of exploitation · percentile 14.1% · 2026-06-18T12:00:27Z |
| Published | 2025-05-06 |
| Last modified | 2025-05-13 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Restriction of XML External Entity Referencecwe-611 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.