High severity8.0NVD Advisory· Published Jan 30, 2025· Updated Jun 17, 2026
CVE-2025-23374
CVE-2025-23374
Description
Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:o:dell:enterprise_sonic_distribution:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:dell:enterprise_sonic_distribution:*:*:*:*:*:*:*:*range: <4.2.3
- cpe:2.3:o:dell:enterprise_sonic_distribution:4.4.0:*:*:*:*:*:*:*
<4.4.1 and <4.2.3+ 1 more
- (no CPE)range: <4.4.1 and <4.2.3
- (no CPE)range: N/A
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.