← Back to CVE List
CVE-2026-35157NVD
Vulnerability Summary
Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an improper neutralization of formula elements in a CSV File vulnerability in the UI. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution.
CVSS v3.1 Base Metrics — Score 5.8 (MEDIUM)
Attack VectorNetwork
Attack ComplexityHigh
Privileges RequiredNone
User InteractionRequired
ScopeChanged
ConfidentialityLow
IntegrityLow
AvailabilityLow
Affected & Patched Versions
- Dell Elastic Cloud Storage >= 3.8.1.0 and < 4.3.0.0
- Dell Objectscale < 4.3.0.0
- Dell Elastic Cloud Storage 4.3.0.0
- Dell Objectscale 4.3.0.0