Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 4.3.0.0 or later
affected
Default status
unaffected
Any version before 4.3.0.0 or later
affected
Description
Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains a use of hard-coded credentials vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to filesystem access for attacker.
Problem types
CWE-798: Use of Hard-coded Credentials
Product status
Any version before 4.3.0.0 or later
Any version before 4.3.0.0 or later
References
www.dell.com/...s-and-objectscale-multiple-vulnerabilities-1