Severity
Low
Analysis Summary
CVE-2025-26478 CVSS:3.1
Dell ECS contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.
CVE-2025-26477 CVSS:4.3
Dell ECS contains an Improper Input Validation vulnerability. A low-privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
Impact
- Gain Access
- Code Execution
Indicators of Compromise
CVE
CVE-2025-26478
CVE-2025-26477
Affected Vendors
- Dell
Affected Products
- Dell ECS - 3.8.1.4
Remediation
Refer to Dell Website for patch, upgrade, or suggested workaround information.

