CVE 4.2 MEDIUM

CVE-2025-36603_CVE-2025-36603

4.2 / 10
MEDIUM
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L

Description

Dell AppSync, version(s) 4.6.0.0, contains an Improper Restriction of XML External Entity Reference vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure and Information tampering.

Basic Information

ID CVE-2025-36603
Source dell
Published Jul 21, 2025 at 16:20
Modified Jul 21, 2025 at 19:09

Affected Product

Vendor Dell
Product AppSync
Version NA
Affected Versions Dell AppSync NA

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.