Описание
Dell EMC iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the virtual console.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 4.40.00.00 (включая) до 4.40.10.00 (исключая)
cpe:2.3:o:dell:idrac9_firmware:*:*:*:*:*:*:*:*
EPSS
Процентиль: 81%
0.01553
Низкий
9.6 Critical
CVSS3
10 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-287
CWE-287
Связанные уязвимости
github
больше 3 лет назад
Dell EMC iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the virtual console.
EPSS
Процентиль: 81%
0.01553
Низкий
9.6 Critical
CVSS3
10 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-287
CWE-287