Vulnerability Intelligence Report
CVE-2025-43936
Dell ObjectScale, versions prior to ObjectScale 4.4.0.0, contains an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
Authentication Bypass
No Active Exploit Signals
CVSS Base Score
8.1
HIGH
Exploitability:2.3
Impact Score:5.9
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-287 ↗CWE-287: Improper Authentication
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Dell | ObjectScale | 0 < 4.4.0.0 or later (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
GitHub Advisory
Vulnerability Class
Authentication Bypass
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Dell · Vendor · USA |
| Reserved | 2025-04-20T05:04:01 |
| Published | 2026-09-16T15:04:33 |
| Patch Date | 2026-09-10 |
| Last Updated | 2026-09-17T03:57:05 |
Community Chatter & Buzz