Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.
Metrics
Affected Vendors & Products
References
History
Thu, 17 Apr 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 17 Apr 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure. | |
Weaknesses | CWE-295 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: dell
Published: 2025-04-17T11:37:44.401Z
Updated: 2025-04-17T13:15:12.492Z
Reserved: 2025-02-11T06:06:12.147Z
Link: CVE-2025-26478

Updated: 2025-04-17T13:15:03.455Z

Status : Awaiting Analysis
Published: 2025-04-17T12:15:15.307
Modified: 2025-04-17T20:21:48.243
Link: CVE-2025-26478

No data.