Dell ECS and ObjectScale Improper Privilege Management Vulnerability Allowing Privilege Escalation

Vulnerability

A vulnerability has been identified in Dell ECS versions 3.8.1.0 through 3.8.1.7 and in Dell ObjectScale versions prior to 4.3.0.0. This vulnerability involves improper privilege management in the operating system, which could be exploited by a high-privileged attacker with local access to elevate privileges.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain elevated rights or access within the system.

Remediation

Users can upgrade to Dell ECS version 4.3.0.0 or later. For those using ObjectScale, version 4.3.0.0 or later is recommended. Instructions for upgrading can be found by opening a Service Request for an Operating Environment Upgrade and quoting DSA-2026-019.

Added: May 11, 2026, 10:20 AM
Updated: May 11, 2026, 10:20 AM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
3.0
remediation
7.7
relevance
8.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.