CVE-2025-26478
CVSS 3.1 Score 3.1 of 10 (low)
Details
Published Apr 17, 2025
CWE ID 295
Summary
CVE-2025-26478 is a vulnerability affecting Dell ECS versions 3.8.1.4 and older. This issue involves Improper Certificate Validation, allowing an unauthenticated attacker with adjacent network access to potentially exploit the flaw and disclose sensitive information. The vulnerability could pose a significant risk to organizational security if not addressed promptly. Network administrators are strongly advised to update their systems as soon as possible to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Amazon Elastic Container Service
Affected Vendors
- Amazon Web Services