Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.36 contain an improper authorization vulnerability. A remote authenticated malicious iDRAC user with low privileges may potentially exploit this vulnerability to obtain sensitive information such as password hashes.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2019-11-07T18:05:40.346130Z

Updated: 2024-09-17T04:04:38.776Z

Reserved: 2019-01-03T00:00:00

Link: CVE-2019-3764

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-11-07T18:15:12.167

Modified: 2020-10-16T13:28:55.067

Link: CVE-2019-3764

cve-icon Redhat

No data.