Home

Description

Dell CloudLink, versions prior to 8.2, contain a vulnerability where a privileged user with known password can run command injection to gain control of system.

PUBLISHED Reserved 2025-03-23 | Published 2025-11-05 | Updated 2025-11-06 | Assigner dell




HIGH: 8.4CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Problem types

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Product status

Default status
unaffected

Any version before 8.2
affected

References

www.dell.com/...-cloudlink-multiple-security-vulnerabilities vendor-advisory

cve.org (CVE-2025-30479)

nvd.nist.gov (CVE-2025-30479)

Download JSON