PT-2026-5386 · Dell · Dell Unity

Published

2026-01-30

·

Updated

2026-01-30

·

CVE-2026-21418

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell Unity versions prior to 5.5.2
Description Dell Unity versions 5.5.2 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') issue. A local attacker with low privileges could potentially exploit this, leading to arbitrary command execution with root privileges.
Recommendations Update to a version newer than 5.5.2.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-21418

Affected Products

Dell Unity