CVE-2025-36597Patch

LOWCVSS 4.7 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell Avamar, versions prior to 19.12 with patch 338905, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Security. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to information disclosure.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-03-09)
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-02-18: 1Mentions · 2026-03-09: 2Patch / Workaround · 2026-02-18: 1Patch / Workaround · 2026-03-09: 2Technical Details · 2026-02-18: 1Technical Details · 2026-03-09: 202-1803-09
Signal classification2 categories
Patch
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-181
Patch1
2026-03-092
Disclosure1Patch1
Full discourse3 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2025-36597 Dell Avamar, versions prior to 19.12 with patch 338905, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in th… https://www.cve.org/CVERecord?id=CVE-2025-36597 ----- Traducción: CVE-2025-36597 Del… http://infoflow.cloud`

    Post summary

    CVE-2025-36597 describes a path traversal flaw in Dell Avamar (pre‑19.12) that can be fixed with patch 338905, with no evidence of active exploitation or PoC provided.

    0000095
    56 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2025-36597 Dell Avamar, versions prior to 19.12 with patch 338905, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in th… https://www.cve.org/CVERecord?id=CVE-2025-36597

    Post summary

    The post announces CVE‑2025‑36597 as a path‑traversal flaw in Dell Avamar, highlights the related patch 338905, and points to the CVE record for details.

    00000266
    56.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Patch

    CVE-2025-36597 Path Traversal Vulnerability in Dell Avamar Versions Prior to 19.12 Patch 338905 https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-36597

    Post summary

    The entry reports a path traversal vulnerability in Dell Avamar before version 19.12, noting a specific patch (338905) and providing technical details, with no evidence of PoC, exploit code, or active exploitation.

    0000045
    4.0K followersView on X

Explore more