Junglewise Threat Intelligence

CVE-2026-32652: Dell AIOps Collector use of default credentials

CVE-2026-32652 · Severity: high · CVSS 7.8 · Published 2026-06-17

Vendors: Dell.

Executive brief

Dell AIOps Collector, a tool used for monitoring and analyzing IT operations, contains a security flaw where default login credentials are not properly secured. An individual with low-level access to the system console could use these default credentials to gain unauthorized access to the underlying file system. This could lead to the theft of sensitive configuration data or the disruption of monitoring services.

Technical details

A 'Use of Default Credentials' vulnerability (CWE-1392) exists in fresh installations of Dell AIOps Collector. The flaw stems from a default user account (identified as 'rancher') that remains accessible via the console. An attacker with local console access and low-level privileges can leverage these default credentials to gain full filesystem access. This vulnerability specifically impacts fresh installations of versions earlier than 1.18.3; systems that have been upgraded from an older version to 1.18.3 or later are not affected. Users are advised to upgrade to version 1.18.3 or manually lock the default account.

Affected products

  • Dell AIOps Collector Versions prior to 1.18.3 (fresh installations only)

Timeline

  • 2026-06-16: advisory: Initial release of Dell Security Advisory DSA-2026-231
  • 2026-06-17: disclosed: NVD publication date

References