CVE-2024-0166: Dell Unity Operating Environment

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands with elevated privileges.

Affected products

  • Dell Unity Operating Environment: before 5.4.0.0.5.094 (fixed in 5.4.0.0.5.094)

Published 2024-02-12. Last modified 2026-06-17.