vulnerability
Dell iDRAC: CVE-2021-36299: DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:S/C:P/I:N/A:P) | May 26, 2022 | Nov 3, 2023 | Nov 26, 2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:P)
Published
May 26, 2022
Added
Nov 3, 2023
Modified
Nov 26, 2025
Description
Dell iDRAC9 versions 4.40.00.00 and later but before 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to the affected application.
Solution
dell-idrac-upgrade-latest
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.