DSA-2021-082: Dell iDRAC 9 Security Update for Improper Authentication Vulnerability
Sommaire: Dell iDRAC 9 contains remediation for an improper authentication vulnerability that may be exploited by malicious users to compromise the affected system.
Cet article s’applique à
Cet article ne s’applique pas à
Cet article n’est lié à aucun produit spécifique.
Toutes les versions de produits ne sont pas identifiées dans cet article.
Impact
Critical
Détails
| Proprietary Code CVE(s) | Description | CVSS Base Score | CVSS Vector String | |
| CVE-2021-21538 | Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the virtual console. | 9.6 |
|
| Proprietary Code CVE(s) | Description | CVSS Base Score | CVSS Vector String | |
| CVE-2021-21538 | Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the virtual console. | 9.6 |
|
Produits touchés et correction
| Product | Affected Version(s) | Updated Version(s) | Link to Update |
| iDRAC9 | Versions 4.40.00.00 and later, but prior to 4.40.10.00 | 4.40.10.00 | Customers can download software, including the latest release of iDRAC firmware, from the Dell Support site at https://www.dell.com/support/home/ Customers can find the iDRAC documentation from the Dell EMC Support site at www.dell.com/idracmanuals |
| Product | Affected Version(s) | Updated Version(s) | Link to Update |
| iDRAC9 | Versions 4.40.00.00 and later, but prior to 4.40.10.00 | 4.40.10.00 | Customers can download software, including the latest release of iDRAC firmware, from the Dell Support site at https://www.dell.com/support/home/ Customers can find the iDRAC documentation from the Dell EMC Support site at www.dell.com/idracmanuals |
Historique de révision
| Revision | Date | Description |
| 1.0 | 2021-05-10 | Initial Release |
Renseignements connexes
Avis de non-responsabilité
Produits touchés
iDRAC9, iDRAC9 - 4.xx Series, Product Security InformationPropriétés de l’article
Numéro d’article: 000186420
Type d’article: Dell Security Advisory
Dernière modification: 10 mai 2021
Obtenez des réponses à vos questions auprès d’autre utilisateurs de Dell
Services de soutien
Vérifiez si votre appareil est couvert par les services de soutien.