CVE-2025-26478

CVSS 3.1 Score 3.1 of 10 (low)

Details

Published Apr 17, 2025
CWE ID 295

Summary

CVE-2025-26478 is a vulnerability affecting Dell ECS versions 3.8.1.4 and older. This issue involves Improper Certificate Validation, allowing an unauthenticated attacker with adjacent network access to potentially exploit the flaw and disclose sensitive information. The vulnerability could pose a significant risk to organizational security if not addressed promptly. Network administrators are strongly advised to update their systems as soon as possible to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Amazon Elastic Container Service

Affected Vendors

  • Amazon Web Services