5

CVE-2014-8272

Exploit
The IPMI 1.5 functionality in Dell iDRAC6 modular before 3.65, iDRAC6 monolithic before 1.98, and iDRAC7 before 1.57.57 does not properly select session ID values, which makes it easier for remote attackers to execute arbitrary commands via a brute-force attack.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Idrac6 Modular Version <= 3.60
Dell ≫ Idrac7 Version <= 1.56.55
Intel ≫ Ipmi Version 1.5
Dell ≫ Idrac6 Monolithic Version <= 1.97
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 21.15% 0.973
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.exploit-db.com/exploits/35770
Exploit
http://www.kb.cert.org/vuls/id/843044
Third Party Advisory
US Government Resource
http://www.kb.cert.org/vuls/id/BLUU-9RDQHM
Third Party Advisory
US Government Resource