CVE-2026-70413: Medium severity Dell Live Optics Collector vulnerability
Dell Live Optics Collector, versions prior to 27.2.13.310, contain(s) a Use of Hard-coded Password vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Live Optics Collectorto a version that resolves this vulnerability.Fixed in 27.2.13.310
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Systems running Dell Live Optics Collector versions earlier than 27.2.13.310 are affected. Exploitation requires local access and a low-privileged attacker account.
What does an attacker need to exploit the vulnerability?
An attacker needs local access, low privileges, and user interaction. The provided data does not indicate that the issue is remotely exploitable.
What is the impact if exploitation succeeds?
Successful exploitation could expose information. The reported severity metrics indicate high confidentiality impact, low integrity impact, and no availability impact.
How can I determine whether an installation is affected?
Check the installed Dell Live Optics Collector version. Versions prior to 27.2.13.310 are affected.