Cyber Posture

CVE-2025-24381

High

Published: 28 March 2025

Published
28 March 2025
Modified
08 July 2025
KEV Added
Patch
CVSS Score 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score 0.0038 59.5th percentile
Risk Priority 18 60% EPSS · 20% KEV · 20% CVSS

Summary

CVE-2025-24381 is a high-severity Open Redirect (CWE-601) vulnerability in Dell Unity Operating Environment. Its CVSS base score is 8.8 (High).

Operationally, exploitation aligns with the MITRE ATT&CK technique Spearphishing Link (T1566.002); ranked in the top 40.5% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog.

The strongest mitigations our analysis identified are NIST 800-53 SI-10 (Information Input Validation) and SI-2 (Flaw Remediation).

Threat & Defense at a Glance

What attackers do: exploitation maps to Spearphishing Link (T1566.002). What defenders deploy: see the NIST 800-53 controls recommended below.
Threat & Defense Details

Mitigating Controls (NIST 800-53 r5)AI

prevent

Directly remediates the open redirect vulnerability by identifying, testing, and deploying the Dell-provided security update for affected Unity versions.

prevent

Validates untrusted URL inputs in redirect parameters to ensure they resolve only to approved domains, blocking exploitation of the open redirect flaw.

prevent

Filters output such as HTTP Location headers containing redirect URLs to strip or block untrusted destinations, mitigating phishing and session theft risks.

MITRE ATT&CK Enterprise TechniquesAI

T1566.002 Spearphishing Link Initial Access
Adversaries may send spearphishing emails with a malicious link in an attempt to gain access to victim systems.
Why these techniques?

Open redirect vulnerability directly enables crafting of spearphishing links using the trusted application domain to redirect users to malicious sites for phishing and potential session theft.

Confidence: HIGH · MITRE ATT&CK Enterprise v19.0

NVD Description

Dell Unity, version(s) 5.4 and prior, contain(s) an URL Redirection to Untrusted Site ('Open Redirect') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to a targeted application user being redirected to arbitrary web URLs. The…

more

vulnerability could be leveraged by attackers to conduct phishing attacks that cause users to divulge sensitive information. Exploitation may allow for session theft.

Deeper analysisAI

CVE-2025-24381 is an URL Redirection to Untrusted Site ('Open Redirect') vulnerability, classified as CWE-601, affecting Dell Unity versions 5.4 and prior. Published on 2025-03-28, it carries a CVSS v3.1 base score of 8.8 (AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H), indicating high severity due to network accessibility, low attack complexity, no required privileges, user interaction dependency, and high impacts on confidentiality, integrity, and availability.

An unauthenticated attacker with remote access can exploit this vulnerability to redirect targeted application users to arbitrary web URLs. This enables phishing attacks that trick users into divulging sensitive information, and exploitation may also facilitate session theft.

Dell's DSA-2025-116 advisory provides a security update addressing multiple vulnerabilities in Dell Unity, Dell UnityVSA, and Dell Unity XT, including CVE-2025-24381. Security practitioners should consult the advisory at https://www.dell.com/support/kbdoc/en-us/000300090/dsa-2025-116-security-update-for-dell-unity-dell-unityvsa-and-dell-unity-xt-security-update-for-multiple-vulnerabilities for patching guidance and mitigation steps.

Details

CWE(s)

Affected Products

dell
unity operating environment
≤ 5.5.0.0.5.259

CVEs Like This One

CVE-2025-24386Same product: Dell Unity Operating Environment
CVE-2025-36604Same product: Dell Unity Operating Environment
CVE-2024-49565Same product: Dell Unity Operating Environment
CVE-2025-24382Same product: Dell Unity Operating Environment
CVE-2026-22277Same product: Dell Unity Operating Environment
CVE-2025-24377Same product: Dell Unity Operating Environment
CVE-2025-22398Same product: Dell Unity Operating Environment
CVE-2025-23383Same product: Dell Unity Operating Environment
CVE-2024-49564Same product: Dell Unity Operating Environment
CVE-2025-24383Same product: Dell Unity Operating Environment

References