Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-3706

Опубликовано: 26 апр. 2019
Источник: nvd
CVSS3: 8.6
CVSS3: 9.8
CVSS2: 10
EPSS Низкий

Описание

Dell EMC iDRAC9 versions prior to 3.24.24.24, 3.21.26.22, 3.22.22.22 and 3.21.25.22 contain an authentication bypass vulnerability. A remote attacker may potentially exploit this vulnerability to bypass authentication and gain access to the system by sending specially crafted data to the iDRAC web interface.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:dell:idrac9_firmware:3.20.21.20:*:*:*:*:*:*:*
cpe:2.3:o:dell:idrac9_firmware:3.21.24.22:*:*:*:*:*:*:*
cpe:2.3:o:dell:idrac9_firmware:3.23.23.23:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.01791
Низкий

8.6 High

CVSS3

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

Dell EMC iDRAC9 versions prior to 3.24.24.24, 3.21.26.22, 3.22.22.22 and 3.21.25.22 contain an authentication bypass vulnerability. A remote attacker may potentially exploit this vulnerability to bypass authentication and gain access to the system by sending specially crafted data to the iDRAC web interface.

EPSS

Процентиль: 82%
0.01791
Низкий

8.6 High

CVSS3

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo