Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-26478


Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.


Published

2025-04-17T12:15:15.307

Last Modified

2025-08-01T20:55:44.843

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 3.1 (LOW)

Weaknesses
  • Type: Primary
    CWE-295

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application dell elastic_cloud_storage ≤ 3.8.1.4 Yes
Application dell objectscale < 4.0.0.0 Yes

References