Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability to manipulate the username field under the comment section and set the value to any user.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.dell.com/support/kbdoc/000185293 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2021-04-30T20:55:21.560938Z
Updated: 2024-09-17T03:28:36.215Z
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-21544
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-04-30T21:15:08.900
Modified: 2022-10-25T19:14:50.563
Link: CVE-2021-21544
Redhat
No data.