CVE-2025-36606: Dell Unity Operating Environment

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Dell Unity, version(s) 5.5 and prior, contain(s) an OS Command Injection Vulnerability in its svc_nfssupport utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

Affected products

  • Dell Unity Operating Environment: before 5.5.1.0 (fixed in 5.5.1.0)

Published 2025-08-04. Last modified 2026-06-17.