漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
iDRAC7/iDRAC8/iDrac9 contains a command injection vulnerability in the SNMP agent.
Vulnerability Description
Dell EMC iDRAC7/iDRAC8, versions prior to 2.60.60.60, and iDRAC9 versions prior to 3.21.21.21 contain a command injection vulnerability in the SNMP agent. A remote authenticated malicious iDRAC user with configuration privileges could potentially exploit this vulnerability to execute arbitrary commands on the iDRAC where SNMP alerting is enabled.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dell EMC iDRAC7、iDRAC8和iDRAC9 命令注入漏洞
Vulnerability Description
Dell EMC iDRAC7、iDRAC8和iDRAC9都是美国戴尔(Dell)公司的包含硬件和软件的系统管理解决方案。该方案为Dell PowerEdge系统提供远程管理、崩溃系统恢复和电源控制等功能。 Dell EMC iDRAC7 2.60.60.60之前版本、iDRAC8 2.60.60.60之前版本和iDRAC9 3.21.21.21之前版本中的SNMP代理存在命令注入漏洞。远程攻击者可利用该漏洞在iDRAC上执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A