Vulnerabilities
Vulnerable Software
Dell:  >> Idrac8  Security Vulnerabilities
A command injection vulnerability exists in local RACADM. A malicious authenticated user could gain control of the underlying operating system.
CVSS Score
8.0
EPSS Score
0.005
Published
2024-03-09
Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.
CVSS Score
2.7
EPSS Score
0.0
Published
2023-01-18
Dell EMC iDRAC7, iDRAC8 and iDRAC9 versions prior to 2.65.65.65, 2.70.70.70, 4.00.00.00 contain a stack-based buffer overflow vulnerability. An unauthenticated remote attacker may exploit this vulnerability to crash the affected process or execute arbitrary code on the system by sending specially crafted input data.
CVSS Score
7.0
EPSS Score
0.084
Published
2020-03-31
Dell iDRAC7 and iDRAC8 devices with firmware before 2.40.40.40 allow authenticated users to gain Bash shell access through a string injection.
CVSS Score
8.8
EPSS Score
0.006
Published
2016-11-29


Contact Us

Shodan ® - All rights reserved