CVE-2026-70414

Summary

Dell Command | Configure (DCC), versions prior to 5.2.3.35, contain a Plaintext Storage of Password vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information Disclosure.

Affected Software

VendorProductVersion RangeStatus
DellCommandConfigure (DCC)0 < 5.2.3.35

Weaknesses

  • CWE-256: CWE-256: Plaintext Storage of a Password

References