Dell Live Optics Collector <27.2.13.310: Hardcoded PW RCE, Info Exposure
CVE-2026-70413 Published on September 28, 2026
Dell Live Optics Collector, versions prior to 27.2.13.310, contain(s) a Use of Hard-coded Password vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
Vulnerability Analysis
CVE-2026-70413 can be exploited with local system access, requires user interaction and a small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality, with no impact on integrity, and no impact on availability.
Weakness Type
Use of Hard-coded Password
The software contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.
Affected Versions
Dell Live Optics Collector:- Before 27.2.13.310 or later is affected.