CVE-2025-36598
Published: Feb 17, 2026
Modified: Feb 17, 2026
CVSS v3.1
6.5
Description
Dell Avamar, versions prior to 19.12 with patch 338905, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Security. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to upload malicious files.
| Vendor | Product | Versions |
|---|---|---|
Dell | Avamar Virtual Edition | affected 19.8 through 19.12 - < 9.12 with CHF 338905 or later |
Dell | PowerProtect DP Series Appliance (IDPA) | affected N/A - < 2.7.9 with AV CHF 338905 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now