Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-98wg-9rfv-5f36

Опубликовано: 18 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.

Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.

EPSS

Процентиль: 13%
0.00042
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 2.7
nvd
около 3 лет назад

Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.

EPSS

Процентиль: 13%
0.00042
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-20