CVE-2025-22402

Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:update_manager_plugin:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-02-07 03:15

Updated : 2025-03-04 16:24


NVD link : CVE-2025-22402

Mitre link : CVE-2025-22402

CVE.ORG link : CVE-2025-22402


JSON object : View

Products Affected

dell

  • update_manager_plugin
CWE
CWE-80

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)

CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')