CVE-2024-25951
Published Mar 9, 2024A command injection vulnerability exists in local RACADM. A malicious authenticated user could gain control of the underlying operating system.
Vendor/product archive
4 CVEs tagged to dell / idrac8 — 0 Critical, 3 High, 0 Medium, 1 Low, 0 Unrated.
A command injection vulnerability exists in local RACADM. A malicious authenticated user could gain control of the underlying operating system.
Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged at…
Dell EMC iDRAC7, iDRAC8 and iDRAC9 versions prior to 2.65.65.65, 2.70.70.70, 4.00.00.00 contain a stack-based buffer overflow vulnerability. An unauthenticated remote attacker may…
Dell iDRAC7 and iDRAC8 devices with firmware before 2.40.40.40 allow authenticated users to gain Bash shell access through a string injection.