First published: Tue Nov 23 2021(Updated: )
iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability by sending a specially crafted malicious request to crash the webserver or cause information disclosure.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell iDRAC9 Firmware | <5.00.00.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36300 is classified as a high severity vulnerability due to its potential for unauthorized remote exploitation.
To remediate CVE-2021-36300, update your Dell iDRAC9 firmware to version 5.00.00.00 or later.
An attacker exploiting CVE-2021-36300 may be able to crash the webserver or gain unauthorized access to sensitive information.
CVE-2021-36300 affects all iDRAC9 firmware versions prior to 5.00.00.00.
No, CVE-2021-36300 can be exploited by an unauthenticated remote attacker.