Stack Overflow Vulnerability in Dell EMC iDRAC9 Components
CVE-2021-21540
5.9MEDIUM
Key Information:
- Vendor
- Dell
- Vendor
- CVE Published:
- 30 April 2021
Summary
Dell EMC iDRAC9 is susceptible to a stack-based overflow vulnerability that allows remote authenticated attackers to exploit the system. By sending specially crafted payloads, attackers could rewrite critical configuration settings which could disrupt normal operations or compromise system integrity. This vulnerability emphasizes the importance of keeping firmware updated and adhering to best security practices.
Affected Version(s)
Integrated Dell Remote Access Controller (iDRAC) < 4.40.00.00
References
CVSS V3.1
Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved