Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions 6.10.80.00 through 7.20.10.50 and Dell Integrated Dell Remote Access Controller 10, 17G versions prior to 1.20.25.00, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
oryginał ENCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:HDell Idrac10
HWDellwszystkie wersjeDell Idrac10 Firmware
OSDell< 1.20.25.00Dell Idrac9
HWDellwszystkie wersjeDell Idrac9 Firmware
OSDell6.10.80.00 – 7.00.00.181 (bez)7.00.00.183 – 7.20.10.50 (bez)
Powiązane podatności
Dell iDRAC9 — ominięcie uwierzytelnienia w konsoli VNC (Auth Bypass)
Auth Bypass w Dell EMC iDRAC9 — dostęp do wirtualnej konsoli
Stack-based buffer overflow w Dell EMC iDRAC6/7/8/9 — zdalny RCE
Dell iDRAC10, versions 1.20.70.50 and 1.30.05.10, contains an Insufficiently Protected Credentials vulnerabili...
iDRAC9, versions prior to 7.00.00.172 for 14th Generation and 7.10.50.00 for 15th and 16th Generations, contai...