CVE-2021-21538: Critical severity Dell Idrac9 Firmware vulnerability
Published Jul 29, 2021
·Updated
Dell EMC iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the virtual console.
Affected Software
1 affected component
Dell Idrac9 Firmware>=4.40.00.00<4.40.10.00
Remediation
Patch Available
Event History
Jul 29, 2021
CVE Published
via MITRE·03:55 PM
Data Sourced
via MITRE·03:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this Dell EMC iDRAC9 vulnerability?
The vulnerability ID of this Dell EMC iDRAC9 vulnerability is CVE-2021-21538.
2
What is the severity level of CVE-2021-21538?
CVE-2021-21538 has a severity level of critical.
3
What does the CVE-2021-21538 vulnerability affect?
The CVE-2021-21538 vulnerability affects Dell EMC iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00.
4
What is the risk of the CVE-2021-21538 vulnerability?
The CVE-2021-21538 vulnerability poses a risk of unauthorized access to the virtual console by a remote unauthenticated attacker.
5
How can I fix the CVE-2021-21538 vulnerability?
To fix the CVE-2021-21538 vulnerability, update to Dell EMC iDRAC9 version 4.40.10.00 or later.