vulnerability

Dell iDRAC: CVE-2021-36299: DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:P)
Published
May 26, 2022
Added
Nov 3, 2023
Modified
Nov 26, 2025

Description

Dell iDRAC9 versions 4.40.00.00 and later but before 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to the affected application.

Solution

dell-idrac-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.