CVE-2025-22402
CVSS 3.1 Score 2.6 of 10 (low)
Details
Published Feb 7, 2025
CWE ID 80
Summary
CVE-2025-22402 is a vulnerability affecting Dell Update Manager Plugin versions 1.5.0 through 1.6.0. This issue involves an Improper Neutralization of Script-Related HTML Tags in a web page, which can be exploited through Basic XSS attacks. A remote, low-privileged attacker could potentially take advantage of this vulnerability to gain unauthorized access to sensitive information. The vulnerability poses a potential risk to organizations using the affected software versions, making it essential to apply the necessary patches as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share