Security Advisory

CVE-2021-36299

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-23 20:00:31
Last updated 2024-09-16 23:36:38
Assigner dell
State PUBLISHED

Description

Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to the affected application.