VYPR
High severity8.0NVD Advisory· Published Jan 30, 2025· Updated Jun 17, 2026

CVE-2025-23374

CVE-2025-23374

Description

Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:o:dell:enterprise_sonic_distribution:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:dell:enterprise_sonic_distribution:*:*:*:*:*:*:*:*range: <4.2.3
    • cpe:2.3:o:dell:enterprise_sonic_distribution:4.4.0:*:*:*:*:*:*:*
  • Dell/Enterprise Sonic OSllm-fuzzy2 versions
    <4.4.1 and <4.2.3+ 1 more
    • (no CPE)range: <4.4.1 and <4.2.3
    • (no CPE)range: N/A

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.