CVE-2025-36606: Dell Unity Operating Environment
High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Dell Unity, version(s) 5.5 and prior, contain(s) an OS Command Injection Vulnerability in its svc_nfssupport utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.
Affected products
- Dell Unity Operating Environment: before 5.5.1.0 (fixed in 5.5.1.0)
Published 2025-08-04. Last modified 2026-06-17.