CVE 7.8 HIGH

CVE-2025-43940_CVE-2025-43940

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

Dell Unity, version(s) 5.5 and Prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution and Elevation of privileges.

Basic Information

ID CVE-2025-43940
Source dell
Published Oct 30, 2025 at 14:05
Modified Oct 30, 2025 at 17:39

Affected Product

Vendor Dell
Product Unity
Version N/A
Affected Versions Dell Unity N/A

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.