ZeroHour

CVE-2020-5366

CVSS 3.1
6.5 medium
EPSS
2%p77
Published
()
Modified
Description

Dell EMC iDRAC9 versions prior to 4.20.20.20 contain a Path Traversal Vulnerability. A remote authenticated malicious user with low privileges could potentially exploit this vulnerability by manipulating input parameters to gain unauthorized read access to the arbitrary files.

Vendors
dell
Products
idrac9 firmware
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news