VYPR
Unrated severityNVD Advisory· Published Jan 30, 2026· Updated Feb 26, 2026

CVE-2026-22277

CVE-2026-22277

Description

Dell UnityVSA, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary command execution with root privileges.

Affected products

2
  • Dell/UnityVSAllm-create
    Range: <=5.4
  • Dell/UnityVSAv5
    Range: N/A

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.