Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 5.4.1.1
affected
Any version before 6.0.3.1
affected
Default status
unaffected
Any version before 5.4.1.1
affected
Description
Dell iDRAC Service Module (iSM) for Windows, versions prior to 6.0.3.1, and Dell iDRAC Service Module (iSM) for Linux, versions prior to 5.4.1.1, contain an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
Problem types
CWE-284: Improper Access Control
Product status
Any version before 5.4.1.1
Any version before 6.0.3.1
Any version before 5.4.1.1
References
www.dell.com/...-for-dell-idrac-service-module-vulnerability