Improper Privilege Management in Dell ECS and ObjectScale Products
CVE-2026-26947

6.7MEDIUM

Key Information:

Vendor

Dell

Status
Vendor
CVE Published:
16 September 2026

What is CVE-2026-26947?

Dell ECS versions 3.8.1.0 through 3.8.1.7, along with versions of Dell ObjectScale prior to 4.4.0.0, are susceptible to an Improper Privilege Management vulnerability. This allows an attacker with local access to escalate their privileges, potentially allowing unauthorized actions within the system. It's crucial for users to apply the latest patches and updates to mitigate risks associated with this vulnerability.

Affected Version(s)

ECS 0 < 4.4.0.0 or later

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.