CVE-2021-36301
medium · 5.9Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote attacker may potentially exploit this vulnerability to control process execution and gain access to the underlying operating system.
5.9
CVSS
27.7%
EPSS (exploit prob.)
98th
EPSS percentile
2021-11-23
Published
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N
Weaknesses
CWE-121CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| dell | emc_idrac8_firmware | < 2.80.80.80 |
| dell | emc_idrac9_firmware | < 4.40.40.00 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2021-36301