CVE 7.8 HIGH

CVE-2025-36607_CVE-2025-36607

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Dell Unity, version(s) 5.5 and prior, contain(s) an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

Basic Information

ID CVE-2025-36607
Source dell
Published Aug 4, 2025 at 14:12
Modified Aug 6, 2025 at 03:55

Affected Product

Vendor Dell
Product Unity
Version N/A
Affected Versions Dell Unity N/A

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.