DSA-2026-231: Security Update for Dell AIOps Collector for Default Credential Vulnerability
Zusammenfassung: Dell AIOps Collector remediation is available for use of default credentials that could be exploited by malicious users to compromise the affected system.
Dieser Artikel gilt für
Dieser Artikel gilt nicht für
Dieser Artikel ist nicht an ein bestimmtes Produkt gebunden.
In diesem Artikel werden nicht alle Produktversionen aufgeführt.
Auswirkungen
High
Details
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
| CVE-2026-32652 | Dell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials" vulnerability. A low privileged attacker with console access could potentially exploit this vulnerability to gain Filesystem access. This vulnerability only affects fresh installations of Collector versions earlier than 1.18.3. Systems that have been upgraded (either manually or automatically) to version 1.18.3 or later are not impacted, even if they were originally installed on an earlier version. | 7.8 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
| CVE-2026-32652 | Dell AIOps Collector versions prior to 1.18.3 contain a "Use of Default Credentials" vulnerability. A low privileged attacker with console access could potentially exploit this vulnerability to gain Filesystem access. This vulnerability only affects fresh installations of Collector versions earlier than 1.18.3. Systems that have been upgraded (either manually or automatically) to version 1.18.3 or later are not impacted, even if they were originally installed on an earlier version. | 7.8 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Betroffene Produkte und Korrektur
| Product | Affected Versions | Remediated Versions | Link |
| Dell AIOps Collector | Versions prior to 1.18.3 | Version 1.18.3 or later | https://www.dell.com/support/product-details/product/cloud-iq/drivers |
| Product | Affected Versions | Remediated Versions | Link |
| Dell AIOps Collector | Versions prior to 1.18.3 | Version 1.18.3 or later | https://www.dell.com/support/product-details/product/cloud-iq/drivers |
Workarounds und Korrekturmaßnahmen
| CVE ID | Workaround and Mitigation |
| CVE-2026-32652 |
This vulnerability is exploitable only in fresh installations before 1.18.3 and have not undergone any upgrade (manual/automatic). If a collector instance has been upgraded at least once, no further action is required. Below steps can be followed to remediate the vulnerability in case immediately upgrading the collector isn't possible:
|
Revisionsverlauf
| Revision | Date | Description |
| 1.0 | 2026-06-16 | Initial Release |
Zugehörige Informationen
Rechtlicher Hinweis
Betroffene Produkte
CloudIQArtikeleigenschaften
Artikelnummer: 000477931
Artikeltyp: Dell Security Advisory
Zuletzt geändert: 16 Juni 2026
Antworten auf Ihre Fragen erhalten Sie von anderen Dell NutzerInnen
Support Services
Prüfen Sie, ob Ihr Gerät durch Support Services abgedeckt ist.