{"id":"CVE-2026-70413","title":"Dell Live Optics Collector, versions prior to 27.2.13.310, contain(s) a Use of Hard-coded Password vulnerability","summary":"Dell Live Optics Collector, versions prior to 27.2.13.310, contain(s) a Use of Hard-coded Password vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.","severity":"medium","cvss":5.6,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N","cwe":["CWE-259"],"vendor":"Dell","product":"Live Optics Collector","affected":["live_optics_collector < 27.2.13.310 or later"],"published":"2026-09-28","updated":"2026-09-28","sourceUpdated":"2026-09-28T15:17:23.350","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-70413","references":[{"url":"https://www.dell.com/support/kbdoc/en-us/000514560/dsa-2026-339-security-update-for-dell-live-optics-collector","label":"security_alert@emc.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-28T15:13:31.604Z","slug":"CVE-2026-70413","body":"## Overview\n\nDell Live Optics Collector, versions prior to 27.2.13.310, contain(s) a Use of Hard-coded Password vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":31,"depthScoreParts":{"impact":30.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}