CVE-2021-21579: Medium severity dell idrac9 firmware vulnerability
Published Aug 3, 2021
·Updated
Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect users to arbitrary web URLs by tricking the victim users to click on maliciously crafted links.
Affected Software
1 affected component
Dell Emc Idrac9 Firmware<4.40.40.00
Event History
Aug 3, 2021
CVE Published
via MITRE·03:30 PM
Data Sourced
via MITRE·03:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-21579?
CVE-2021-21579 is an open redirect vulnerability in Dell EMC iDRAC9 versions prior to 4.40.40.00.
2
How does CVE-2021-21579 impact Dell EMC iDRAC9?
CVE-2021-21579 allows a remote unauthenticated attacker to redirect users to arbitrary web URLs by tricking them to click on malicious links.
3
What is the severity of CVE-2021-21579?
The severity of CVE-2021-21579 is medium with a CVSS score of 6.1.
4
How can an attacker exploit CVE-2021-21579?
An attacker can exploit CVE-2021-21579 by crafting malicious links and tricking users into clicking on them.
5
How can I fix CVE-2021-21579?
To fix CVE-2021-21579, update Dell EMC iDRAC9 to version 4.40.40.00 or later.