Inclusion of Sensitive Information in Source Code Vulnerability in Dell ECS and ObjectScale
CVE-2026-22275

4.4MEDIUM

Key Information:

Vendor

Dell

Vendor
CVE Published:
23 January 2026

What is CVE-2026-22275?

Dell ECS versions 3.8.1.0 to 3.8.1.7 and earlier versions of Dell ObjectScale are susceptible to an inclusion of sensitive information in source code vulnerability. A low privileged attacker with local access could potentially exploit this flaw, leading to the exposure of confidential information. Organizations using these products should review their security measures to mitigate potential risks associated with this vulnerability.

Affected Version(s)

ObjectScale < 4.2.0.0

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.