First published: Thu Mar 04 2021(Updated: )
Dell iDRAC8 versions prior to 2.75.100.75 contain a host header injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary ‘Host’ header values to poison a web-cache or trigger redirections.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Idrac8 Firmware | <2.75.100.75 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-21510 is a host header injection vulnerability in Dell iDRAC8 versions prior to 2.75.100.75.
An attacker can potentially exploit CVE-2021-21510 by injecting arbitrary 'Host' header values to poison a web-cache or trigger redirections.
CVE-2021-21510 has a severity rating of 6.1 (medium).
Dell iDRAC8 versions prior to 2.75.100.75 are affected by CVE-2021-21510.
To fix CVE-2021-21510, update Dell iDRAC8 firmware to version 2.75.100.75 or later.