DELL Dell EMC iDRAC9是美国戴尔(DELL)公司的一套包含硬件和软件的系统管理解决方案。该方案为Dell PowerEdge系统提供远程管理、崩溃系统恢复和电源控制等功能。 Dell EMC iDRAC9 4.40.00.00及之前版本存在SQL注入漏洞,具有低权限的远程身份验证用户可能会利用此漏洞通过向受影响的应用程序提供特制的输入数据来导致信息泄露或拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Dell | Integrated Dell Remote Access Controller (iDRAC) | unspecified ~ 5.00.00.00 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-36312 | 9.1 CRITICAL | Dell EMC CloudLink 安全漏洞 |
| CVE-2021-36313 | 9.1 CRITICAL | Dell EMC CloudLink 操作系统命令注入漏洞 |
| CVE-2021-21561 | 7.8 HIGH | Dell Technologies Dell PowerScale OneFS 日志信息泄露漏洞 |
| CVE-2021-36314 | 7.1 HIGH | Dell EMC CloudLink 安全漏洞 |
| CVE-2021-36300 | 6.5 MEDIUM | Dell Emc Idrac SQL注入漏洞 |
| CVE-2021-36311 | 6.0 MEDIUM | DELL EMC NetWorker 安全漏洞 |
| CVE-2021-36301 | 5.9 MEDIUM | Dell EMC iDRAC9和Dell EMC iDRAC8 缓冲区错误漏洞 |
| CVE-2021-36334 | 5.9 MEDIUM | Dell EMC CloudLink 安全漏洞 |
| CVE-2021-36333 | 5.5 MEDIUM | Dell EMC CloudLink 安全漏洞 |
| CVE-2021-36332 | 5.4 MEDIUM | Dell EMC CloudLink 输入验证错误漏洞 |
| CVE-2021-36335 | 4.3 MEDIUM | Dell Emc CloudLink 输入验证错误漏洞 |
No comments yet