← Back

CVE-2025-26478

nvd nist
Published: Apr 17, 2025Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.

Affected (2)

2 products
Elastic Cloud Storage
Objectscale
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.8.1.4
Before 4.0.0.0

Timeline

No history available yet.