Dell CloudLink, versions prior to 8.1.1, contain a vulnerability where a privileged user with known password can run CLI Escape Vulnerability to gain control of system.
The vulnerability (CWE-269 — improper privilege management) consists of the fact that a user with access to the CLI interface and who knows the password can perform a so-called CLI Escape — that is, escape from the restricted shell environment and gain access to the broader operating system. In this way, an attacker bypasses the restrictions imposed on the privileged account and takes control of the system in a scope exceeding the intended permissions.
An attacker can gain full control over the system, which includes access to sensitive data, the ability to modify configuration, and disruption of services. Due to the scope (Scope: Changed), the impact may affect not only the Dell CloudLink component itself, but also related infrastructure.
Dell CloudLink should be updated to version 8.1.1 or later. Detailed information is available in the manufacturer's security bulletin DSA-2025-374 at: https://www.dell.com/support/kbdoc/en-us/000384363/dsa-2025-374-security-update-for-dell-cloudlink-multiple-security-vulnerabilities
Dell CloudLink in versions earlier than 8.1.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:HDell Cloudlink
APPDell< 8.1.1
Related vulnerabilities
Dell CloudLink: command injection przez ucieczkę z restricted shell
Authentication Bypass w Dell CloudLink — obejście uwierzytelnienia konsoli systemowej
Authentication Bypass w Dell EMC CloudLink — logowanie bez hasła
Dell EMC CloudLink — zakodowane hasło umożliwiające nieautoryzowany dostęp
Command Injection w Dell EMC CloudLink 7.1 i wcześniejszych