Security Advisory

CVE-2019-3764

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-11-07 18:05:40
Last updated 2024-09-17 04:04:38
Assigner dell
State PUBLISHED

Description

Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.36 contain an improper authorization vulnerability. A remote authenticated malicious iDRAC user with low privileges may potentially exploit this vulnerability to obtain sensitive information such as password hashes.