Authentication Bypass in Dell ECS and ObjectScale Products
CVE-2025-43992
5.6MEDIUM
What is CVE-2025-43992?
Dell ECS versions 3.8.1.0 to 3.8.1.7 and Dell ObjectScale prior to version 4.3.0.0 are vulnerable to an authentication bypass due to issues in Geo replication. This can allow an unauthenticated remote attacker to potentially gain unauthorized access to sensitive data transmitted during the replication process. Therefore, it is crucial for users to apply the latest security updates provided by Dell to mitigate this risk effectively.
Affected Version(s)
ECS 0 < 4.3.0.0 or later
ObjectScale 0 < 4.3.0.0 or later