CVE-2025-36611: Dell Encryption

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell Encryption and Dell Security Management Server, versions prior to 11.11.0, contain an Improper Link Resolution Before File Access ('Link Following') Vulnerability. A local malicious user could potentially exploit this vulnerability, leading to privilege escalation.

Affected products

  • Dell Encryption: before 11.11.0.1 (fixed in 11.11.0.1)
  • Dell Security Management Server: before 11.11.0.2 (fixed in 11.11.0.2)

Published 2025-07-30. Last modified 2026-06-17.