CVE-2025-26478
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.
Affected (2)
Products: Dell: Elastic Cloud Storage, Objectscale
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.8.1.4 | |
| Before 4.0.0.0 |
References (1)
Source: security_alert@emc.com
Vendor Advisory
Timeline
No history available yet.