Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.36 contain an improper authorization vulnerability. A remote authenticated malicious iDRAC user with low privileges may potentially exploit this vulnerability to obtain sensitive information such as password hashes.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2019-11-07T18:05:40.346130Z
Updated: 2024-09-17T04:04:38.776Z
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-3764
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-11-07T18:15:12.167
Modified: 2024-11-21T04:42:29.157
Link: CVE-2019-3764
Redhat
No data.