CVE-2025-26476: Dell Elastic Cloud Storage

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell ECS versions prior to 3.8.1.5/ ObjectScale version 4.0.0.0, contain a Use of Hard-coded Cryptographic Key vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.

Affected products

  • Dell Elastic Cloud Storage: before 3.8.1.5 (fixed in 3.8.1.5)
  • Dell Objectscale: version 4.0.0.0 only

Published 2025-08-04. Last modified 2026-06-17.