CVE-2025-36573

Dell Smart Dock Firmware, versions prior to 01.00.08.01, contain an Insertion of Sensitive Information into Log File vulnerability. A user with local access could potentially exploit this vulnerability, leading to Information disclosure.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:pro_smart_dock_sd25_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:pro_smart_dock_sd25:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dell:pro_thunderbolt_4_smart_dock_sd25tb4_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:pro_thunderbolt_4_smart_dock_sd25tb4:-:*:*:*:*:*:*:*

History

13 Jan 2026, 19:43

Type Values Removed Values Added
First Time Dell pro Smart Dock Sd25 Firmware
Dell pro Thunderbolt 4 Smart Dock Sd25tb4 Firmware
Dell pro Smart Dock Sd25
Dell
Dell pro Thunderbolt 4 Smart Dock Sd25tb4
References () https://www.dell.com/support/kbdoc/en-us/000323183/dsa-2025-218 - () https://www.dell.com/support/kbdoc/en-us/000323183/dsa-2025-218 - Vendor Advisory
CPE cpe:2.3:h:dell:pro_smart_dock_sd25:-:*:*:*:*:*:*:*
cpe:2.3:h:dell:pro_thunderbolt_4_smart_dock_sd25tb4:-:*:*:*:*:*:*:*
cpe:2.3:o:dell:pro_smart_dock_sd25_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:pro_thunderbolt_4_smart_dock_sd25tb4_firmware:*:*:*:*:*:*:*:*

16 Jun 2025, 12:32

Type Values Removed Values Added
Summary
  • (es) Dell Smart Dock Firmware, versiones anteriores a la 01.00.08.01, contiene una vulnerabilidad de inserción de información confidencial en el archivo de registro. Un usuario con acceso local podría explotar esta vulnerabilidad, lo que podría provocar la divulgación de información.

12 Jun 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-12 16:15

Updated : 2026-01-13 19:43


NVD link : CVE-2025-36573

Mitre link : CVE-2025-36573

CVE.ORG link : CVE-2025-36573


JSON object : View

Products Affected

dell

  • pro_thunderbolt_4_smart_dock_sd25tb4
  • pro_smart_dock_sd25_firmware
  • pro_thunderbolt_4_smart_dock_sd25tb4_firmware
  • pro_smart_dock_sd25
CWE
CWE-532

Insertion of Sensitive Information into Log File