Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains a use of hard-coded credentials vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to filesystem access for attacker.
Metrics
Affected Vendors & Products
References
History
Mon, 11 May 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Use of Hard‑Coded Credentials in Dell ECS and ObjectScale Allows Local File System Access |
Mon, 11 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains a use of hard-coded credentials vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to filesystem access for attacker. | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2026-05-11T12:44:26.632Z
Reserved: 2026-04-14T16:10:47.675Z
Link: CVE-2026-40636
Updated: 2026-05-11T12:44:21.061Z
Status : Received
Published: 2026-05-11T10:16:13.623
Modified: 2026-05-11T10:16:13.623
Link: CVE-2026-40636
No data.
OpenCVE Enrichment
Updated: 2026-05-11T17:45:26Z