DSA-2021-082: Dell iDRAC 9 Security Update for Improper Authentication Vulnerability
Resumen: Dell iDRAC 9 contains remediation for an improper authentication vulnerability that may be exploited by malicious users to compromise the affected system.
Este artículo se aplica a:
Este artículo no se aplica a:
Este artículo no está vinculado a ningún producto específico.
En este artículo no se identifican todas las versiones de los productos.
Impacto
Critical
Detalles
| Proprietary Code CVE(s) | Description | CVSS Base Score | CVSS Vector String | |
| CVE-2021-21538 | Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the virtual console. | 9.6 |
|
| Proprietary Code CVE(s) | Description | CVSS Base Score | CVSS Vector String | |
| CVE-2021-21538 | Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the virtual console. | 9.6 |
|
Productos afectados y corrección
| Product | Affected Version(s) | Updated Version(s) | Link to Update |
| iDRAC9 | Versions 4.40.00.00 and later, but prior to 4.40.10.00 | 4.40.10.00 | Customers can download software, including the latest release of iDRAC firmware, from the Dell Support site at https://www.dell.com/support/home/ Customers can find the iDRAC documentation from the Dell EMC Support site at www.dell.com/idracmanuals |
| Product | Affected Version(s) | Updated Version(s) | Link to Update |
| iDRAC9 | Versions 4.40.00.00 and later, but prior to 4.40.10.00 | 4.40.10.00 | Customers can download software, including the latest release of iDRAC firmware, from the Dell Support site at https://www.dell.com/support/home/ Customers can find the iDRAC documentation from the Dell EMC Support site at www.dell.com/idracmanuals |
Historial de revisiones
| Revision | Date | Description |
| 1.0 | 2021-05-10 | Initial Release |
Información relacionada
Aviso legal
Productos afectados
iDRAC9, iDRAC9 - 4.xx Series, Product Security InformationPropiedades del artículo
Número de artículo: 000186420
Tipo de artículo: Dell Security Advisory
Última modificación: 10 may 2021
Encuentra las respuestas que necesitas con la ayuda de otros usuarios de Dell
Servicios de asistencia
Comprueba si tu dispositivo está cubierto por los servicios de asistencia.