CVE-2025-36568General(dell / data_domain_operating_system)

LOWCVSS 7.8 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell PowerProtect Data Domain BoostFS for client of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release versions 7.13.1.0 through 7.13.1.50, contain an insufficiently protected credentials vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to credential exposure. The attacker may be able to use the exposed credentials to access the system with privileges of the compromised account.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-522

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • data_domain_operating_system

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
data_domain_operating_system

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-17: 3Technical Details · 2026-04-17: 204-17
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets4 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2025-36568 Insufficiently Protected Credentials Vulnerability in Dell PowerP... https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-36568 Vulnerability Alert Subscriptions: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=1

    Post summary

    The tweet merely announces CVE-2025-36568, cites a title indicating the CVE type, and links to a vulnerability database, with no evidence of exploitation, PoC, or patch details.

    00000179
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2025-36568 Dell PowerProtect Data Domain BoostFS for client of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release version 8.3.1.0 through 8.3.1.20, LTS2024 release ve… https://www.cve.org/CVERecord?id=CVE-2025-36568

    Post summary

    The content merely references the CVE ID and affected product versions, linking to the CVE record without additional technical or contextual information.

    00000193
    57.2K followersView on X
  • Kaitan ID Security@KaitanSecurity
    General

    ⚠️ HIGH — CVE-2025-36568 Dell PowerProtect Data Domain BoostFS for client of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release versi… CVSS 7.8 Full analysis → https://sec.kaitan.id/cves/CVE-2025-36568 #Dell #CyberSecurity #InfoSec

    Post summary

    The post announces CVE‑2025‑36568 with a CVSS score of 7.8 for Dell PowerProtect Data Domain BoostFS, but provides no concrete PoC, exploit, active use, or patch information.

    000001
    145 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSdelldata_domain_operating_system---

Explore more