Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4...
High severity
Unreviewed
Published
Nov 24, 2021
to the GitHub Advisory Database
•
Updated Feb 1, 2023
Description
Published by the National Vulnerability Database
Nov 23, 2021
Published to the GitHub Advisory Database
Nov 24, 2021
Last updated
Feb 1, 2023
Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to the affected application.
References