CVE-2026-26947: Medium severity Dell ECS vulnerability
Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Improper Privilege Management vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell ECSto a version that resolves this vulnerability.Fixed in 3.8.1.7 - Upgrade
Upgrade
Dell ObjectScaleto a version that resolves this vulnerability.Fixed in 4.4.0.0
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
Exploitation requires an attacker to already have high privileges and local access to an affected Dell ECS or Dell ObjectScale system. It is not described as remotely exploitable or requiring user interaction.
Which deployments are affected?
Dell ECS versions 3.8.1.0 through 3.8.1.7 are affected. Dell ObjectScale versions earlier than 4.4.0.0 are affected.
What is the potential impact if exploited?
A successful exploit could allow elevation of privileges. The supplied severity vector indicates potential high impact to confidentiality, integrity, and availability.