CVE-2025-26478

Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:elastic_cloud_storage:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:objectscale:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-17 12:15

Updated : 2025-08-01 20:55


NVD link : CVE-2025-26478

Mitre link : CVE-2025-26478

CVE.ORG link : CVE-2025-26478


JSON object : View

Products Affected

dell

  • objectscale
  • elastic_cloud_storage
CWE
CWE-295

Improper Certificate Validation