Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability to manipulate the username field under the comment section and set the value to any user.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-8816 Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability to manipulate the username field under the comment section and set the value to any user.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-09-17T03:28:36.215Z

Reserved: 2021-01-04T00:00:00

Link: CVE-2021-21544

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-04-30T21:15:08.900

Modified: 2024-11-21T05:48:33.760

Link: CVE-2021-21544

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses