Описание
Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote attacker may potentially exploit this vulnerability to control process execution and gain access to the underlying operating system.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.80.80.80 (исключая)Версия до 4.40.40.00 (исключая)
Одно из
cpe:2.3:o:dell:emc_idrac8_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:dell:emc_idrac9_firmware:*:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.14489
Средний
5.9 Medium
CVSS3
7.2 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-121
CWE-787
Связанные уязвимости
CVSS3: 7.2
github
больше 3 лет назад
Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote attacker may potentially exploit this vulnerability to control process execution and gain access to the underlying operating system.
EPSS
Процентиль: 94%
0.14489
Средний
5.9 Medium
CVSS3
7.2 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-121
CWE-787