ZeroHour

CVE-2021-36348

CVSS 3.1
8.1 high
EPSS
1%p64
Published
()
Modified
Description

iDRAC9 versions prior to 5.00.20.00 contain an input injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to iDRAC.

Vendors
dell
Products
integrated dell remote access controller 9 firmware
Weakness
CWE-89, CWE-74
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.