VYPR

ECS

by Dell

CVEs (23)

  • CVE-2025-26477MedApr 17, 2025
    risk 0.28cvss 4.3epss 0.00

    Dell ECS version 3.8.1.4 and prior contain an Improper Input Validation vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

  • CVE-2024-38485MedDec 9, 2024
    risk 0.28cvss 4.3epss 0.00

    Dell ECS, versions prior to 3.8.0, contain(s) a Host Header Injection Vulnerability. A remote low-privileged attacker could potentially exploit this vulnerability to trigger redirections that leads to sensitive information leakage.

  • CVE-2025-26478LowApr 17, 2025
    risk 0.20cvss 3.1epss 0.00

    Dell ECS version 3.8.1.4 and prior contain an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information disclosure.

Page 2 of 2