Multiple IBM Infosphere Information Server Vulnerabilities
April 24, 2025Multiple Mozilla Firefox Vulnerabilities
April 24, 2025Multiple IBM Infosphere Information Server Vulnerabilities
April 24, 2025Multiple Mozilla Firefox Vulnerabilities
April 24, 2025Severity
Low
Analysis Summary
CVE-2025-26478 CVSS:3.1
Dell ECS contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.
CVE-2025-26477 CVSS:4.3
Dell ECS contains an Improper Input Validation vulnerability. A low-privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
Impact
- Gain Access
- Code Execution
Indicators of Compromise
CVE
CVE-2025-26478
CVE-2025-26477
Affected Vendors
- Dell
Affected Products
- Dell ECS - 3.8.1.4
Remediation
Refer to Dell Website for patch, upgrade, or suggested workaround information.