CVE-2025-46423: OS Command Injection
Dell Unity, version(s) 5.5 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability to execute arbitrary commands with root privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-46423?
CVE-2025-46423 is classified as a high severity vulnerability due to its potential for OS command injection allowing arbitrary command execution.
How do I fix CVE-2025-46423?
To fix CVE-2025-46423, update your Dell Unity system to version 5.6 or later, which includes a patch for this vulnerability.
What systems are affected by CVE-2025-46423?
CVE-2025-46423 affects Dell Unity systems running versions 5.5 and prior.
Can a remote attacker exploit CVE-2025-46423?
No, CVE-2025-46423 requires local access for exploitation, making it accessible only to low privileged attackers physically present.
What are the implications of CVE-2025-46423?
The implications of CVE-2025-46423 include the possibility for local attackers to execute arbitrary commands with root privileges, compromising system integrity.