High severity8.8NVD Advisory· Published Jan 22, 2026· Updated Jun 17, 2026
CVE-2025-36588
CVE-2025-36588
Description
Dell Unisphere for PowerMax, version(s) 10.2.0.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:dell:unisphere_for_powermax:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:dell:unisphere_for_powermax:*:*:*:*:*:*:*:*range: <9.2.4.19
- (no CPE)range: 10.2.0.x
- (no CPE)range: N/A
- (no CPE)range: N/A
- cpe:2.3:a:dell:unisphere_for_powermax_virtual_appliance:*:*:*:*:*:*:*:*Range: <9.2.4.19
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.