10
CVE-2019-3706
- EPSS 1.79%
- Veröffentlicht 26.04.2019 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:42:22
- Quelle security_alert@emc.com
- CVE-Watchlists
- Unerledigt
Dell EMC iDRAC9 versions prior to 3.24.24.24, 3.21.26.22, 3.22.22.22 and 3.21.25.22 contain an authentication bypass vulnerability. A remote attacker may potentially exploit this vulnerability to bypass authentication and gain access to the system by sending specially crafted data to the iDRAC web interface.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Idrac9 Firmware Version3.20.21.20
Dell ≫ Idrac9 Firmware Version3.21.24.22
Dell ≫ Idrac9 Firmware Version3.23.23.23
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.79% | 0.822 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
| security_alert@emc.com | 8.6 | 3.9 | 4.7 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
|