← Back to CVE List
Vulnerability Intelligence Report

CVE-2025-26476

Dell ECS versions prior to 3.8.1.5/ ObjectScale version 4.0.0.0, contain a Use of Hard-coded Cryptographic Key vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.

No Active Exploit Signals
CVSS Base Score
8.4
HIGH
Exploitability:2.6
Impact Score:5.9
EPSS Probability:0.11%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Weaknesses (CWE)

CWE-321 ↗CWE-321: Use of Hard-coded Cryptographic Key

Affected Products & Versions

Vendor Product Affected Versions
Dell ECS N/A < 3.8.1.5 (affected)
Dell ObjectScale 4.0.0.0 < 4.0.0.0 or later (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.111%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityDell · Vendor · USA
Reserved2025-02-11T06:06:12
Published2025-08-04T18:44:50
Patch Date2025-07-28
Last Updated2026-02-26T17:49:58

LINK COPIED TO CLIPBOARD