# CVE-2025-26332

## Summary

- **CVE ID:** CVE-2025-26332
- **Severity:** HIGH
- **CVSS Score:** 8.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H)
- **CWE:** CWE-532
- **Published:** Jul 30, 2025
- **Last Modified:** Mar 13, 2026

## Description

TechAdvisor versions 2.6 through 3.37-30 for Dell XtremIO X2, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

## Affected Products

- Dell — TechAdvisor (2.6)

## References

- [CNA](https://www.dell.com/support/kbdoc/en-us/000337241/dsa-2025-108-security-update-for-dell-emc-xtremio-x2)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.14%
- **EPSS Percentile:** 3.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._