CVEs (22)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Dell ECS, versions 3.5 and 3.6, contain an Improper Access Control in the Identity and Access Management (IAM) module. A remote unauthenticated attacker may potentially exploit this vulnerability, leading to gaining read...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 May 11, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains a use of hard-coded credentials vulnerability. An unauthenticated attacker with local access could potentially exploit th...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 May 11, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an improper neutralization of formula elements in a CSV File vulnerability in the UI. An unauthenticated attacker with re...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 May 11, 2026 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an improper privilege management vulnerability in the OS. A high privileged attacker with local access could potentially...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 May 11, 2026 N/A· v4 5.6 MEDIUM· v3 N/A· v2 Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an authentication bypass by assumed-immutable data vulnerability in Geo replication. An unauthenticated attacker with rem...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJul 24, 2026 Apr 8, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Dell Elastic Cloud Storage, version 3.8.1.7 and prior, and Dell ObjectScale, versions prior to 4.1.0.3 and version 4.2.0.0, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged att...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Jan 23, 2026 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains a Cleartext Storage of Sensitive Information vulnerability. A low privileged attacker with local access could potential...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Jan 23, 2026 N/A· v4 4.4 MEDIUM· v3 N/A· v2 Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains an Inclusion of Sensitive Information in Source Code vulnerability. A low privileged attacker with local access could p...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Jan 23, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains a Cleartext Transmission of Sensitive Information vulnerability in the Fabric Syslog. An unauthenticated attacker with...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Jan 23, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains an Use of Default Credentials vulnerability in the OS. A low privileged attacker with remote access could potentially e...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Jan 23, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains a Cleartext Transmission of Sensitive Information vulnerability. An unauthenticated attacker with remote access could p...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Aug 4, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Dell ECS versions prior to 3.8.1.5/ ObjectScale version 4.0.0.0, contain a Use of Hard-coded Cryptographic Key vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, le...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Jul 15, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Dell ECS versions prior to 3.8.1.5/ ObjectScale version 4.0.0.0 contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulne...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Apr 17, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information d...Show more |
1Dell 2Elastic Cloud Storage ObjectscaleJun 17, 2026 Apr 17, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Dell ECS version 3.8.1.4 and prior contain an Improper Input Validation vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution. |
Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS. An authenticated user with bucket or object-level access and the necessary privileges could po...Show more |
Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Sessio...Show more |
Dell ECS, versions prior to 3.8.0, contain(s) a Host Header Injection Vulnerability. A remote low-privileged attacker could potentially exploit this vulnerability to trigger redirections that leads to sensitive informati...Show more |
Dell ECS, versions prior to 3.8.1, contain a privilege elevation vulnerability in user management. A remote high privileged attacker could potentially exploit this vulnerability, gaining access to unauthorized end points...Show more |
Dell ECS, versions 3.6 through 3.6.2.5, and 3.7 through 3.7.0.6, and 3.8 through 3.8.0.4 versions, contain an improper access control vulnerability. A remote high privileged attacker could potentially exploit this vulner...Show more |