CVE 7.8 HIGH

CVE-2026-28261_CVE-2026-28261

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Dell Elastic Cloud Storage, version 3.8.1.7 and prior, and Dell ObjectScale, versions prior to 4.1.0.3 and version 4.2.0.0, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to secret exposure. The attacker may be able to use the exposed secret to access the vulnerable system with privileges of the compromised account.

Basic Information

ID CVE-2026-28261
Source dell
Published Apr 8, 2026 at 12:43
Modified Apr 9, 2026 at 03:55

Affected Product

Vendor Dell
Product Elastic Cloud Storage
Affected Versions Dell Elastic Cloud Storage 0
Dell ObjectScale 0
Dell ObjectScale 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.