Xtremio Management Server
Vendor:
First CVE: Mar 13, 2020 · Active for 6 years
7
Total CVEs
More Total CVEs than 85% of tracked products
1.8
Avg CVEs / Year
Higher CVE frequency than 63% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 51% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Xtremio Management Server over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 13, 2020
6 years ago
Most Recent CVE
Jul 30, 2025
363 days ago
CVE Severity & Scoring
Xtremio Management Server7 CVEs
57%
14%
29%
All CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (57.1%)
Network3 (42.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (71.4%)
Unknown0 (0.0%)
Required2 (28.6%)
Privileges Required
Low3 (42.9%)
High2 (28.6%)
None2 (28.6%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-31228CRITICAL Dell EMC XtremIO versions prior to X2 6.4.0-22 contain a bruteforce vulnerability. A remote unauthenticated attacker can potentially exploit this vulnerability and gain access to a | Oct 12, 2022 | 9.8 | 30 | NO | NO |
CVE-2019-18578CRITICAL Dell EMC XtremIO XMS versions prior to 6.3.0 contain a stored cross-site scripting vulnerability. A low-privileged malicious remote user of XtremIO may exploit this vulnerability t | Mar 13, 2020 | 9.0 | 29 | NO | NO |
CVE-2021-21549HIGH Dell EMC XtremIO Versions prior to 6.3.3-8, contain a Cross-Site Request Forgery Vulnerability in XMS. A non-privileged attacker could potentially exploit this vulnerability, leadi | May 21, 2021 | 8.8 | 26 | NO | NO |
CVE-2019-18577MEDIUM Dell EMC XtremIO XMS versions prior to 6.3.0 contain an incorrect permission assignment vulnerability. A malicious local user with XtremIO xinstall privileges may exploit this vuln | Mar 13, 2020 | 6.7 | 22 | NO | NO |
CVE-2019-18576MEDIUM Dell EMC XtremIO XMS versions prior to 6.3.0 contain an information disclosure vulnerability where OS users’ passwords are logged in local files. Malicious local users with access | Mar 13, 2020 | 6.7 | 22 | NO | NO |
CVE-2025-26332MEDIUM TechAdvisor versions 2.6 through 3.37-30 for Dell XtremIO X2, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local acc | Jul 30, 2025 | 5.5 | 21 | NO | NO |
CVE-2025-30105MEDIUM Dell XtremIO, version(s) 6.4.0-22, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially explo | Jul 30, 2025 | 5.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (7 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (7 CVEs).
Media Mentions
Signals from CVEs in this product scope (7 CVEs).
Top CNAs Publishing CVEs For Xtremio Management Server
Top CWEs
Versions
No cataloged versions.