CVE-2025-36595: Dell Solutions Enabler Virtual Appliance

High severity, CVSS 7.2. EPSS: 0.7% chance of exploitation in the next 30 days.

Dell Unisphere for PowerMax vApp, version(s) 9.2.4.x, contain(s) an Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

Affected products

  • Dell Solutions Enabler Virtual Appliance: from 9.2.4.0, before 9.2.4.11 (fixed in 9.2.4.11)
  • Dell Unisphere For Powermax Virtual Appliance: from 9.2.4.0, before 9.2.4.17 (fixed in 9.2.4.17)

Published 2025-06-27. Last modified 2026-06-17.