Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 12 May 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
ssvc
|
Tue, 12 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell elastic Cloud Storage
|
|
| CPEs | cpe:2.3:a:dell:elastic_cloud_storage:*:*:*:*:*:*:*:* cpe:2.3:a:dell:objectscale:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Dell elastic Cloud Storage
|
Tue, 12 May 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell ecs Dell objectscale |
|
| Vendors & Products |
Dell
Dell ecs Dell objectscale |
Mon, 11 May 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Neutralization of Formula Elements in CSV File Allowing Remote Execution |
Mon, 11 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell ECS versions 3.8.1.0 through 3.8.1.7 and Dell ObjectScale versions prior to 4.3.0.0, contains an improper neutralization of formula elements in a CSV File vulnerability in the UI. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to remote execution. | |
| Weaknesses | CWE-1236 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2026-05-12T19:49:11.038Z
Reserved: 2026-04-01T17:04:27.475Z
Link: CVE-2026-35157
Updated: 2026-05-11T13:59:07.555Z
Status : Analyzed
Published: 2026-05-11T10:16:13.490
Modified: 2026-05-12T17:19:22.237
Link: CVE-2026-35157
No data.
OpenCVE Enrichment
Updated: 2026-05-12T09:23:17Z