Dell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management Controller Firmware for Dell PowerEdge VRTX version(s) prior to 3.41.200.202209300499, contain(s) a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
CVE ID: CVE-2025-26336
CVSS Base Severity: HIGH
CVSS Base Score: 8.3
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:H
Vendor: Dell, Dell
Product: Dell Chassis Management Controller (CMC) for Dell PowerEdge FX2, Dell Chassis Management Controller (CMC) for PowerEdge VRTX
EPSS Score: 0.06% (probability of being exploited)
EPSS Percentile: 20.17% (scored less or equal to compared to others)
EPSS Date: 2025-04-18 (when was this score calculated)