9.8
CVSSv3

CVE-2018-1207

Published: 23/03/2018 Updated: 24/08/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Dell EMC iDRAC7/iDRAC8, versions before 2.52.52.52, contain CGI injection vulnerability which could be used to execute remote code. A remote unauthenticated attacker may potentially be able to use CGI variables to execute remote code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dell emc idrac8

dell emc idrac7

Vendor Advisories

Check Point Reference: CPAI-2018-2684 Date Published: 10 Mar 2024 Severity: Critical ...

Github Repositories

A proof of concept for CVE-2018-1207.

CVE-2018-1207 A proof of concept for CVE-2018-1207 Requirements In order to run, you will need to install the sh4-linux-gnu-gcc-9 package For Ubuntu 2004: apt install build-essential wget securityubuntucom/ubuntu/pool/universe/g/gcc-9-cross-ports/gcc-9-sh4-linux-gnu_940-1ubuntu1~2004cross1_amd64deb dpkg -i gcc-9-sh4-linux-gnu_940-1ubuntu1-2004cross1_amd64deb

Exploit iDRAC 7 & 8 firmware < 2.52.52.52

cve-2018-1207 Exploit iDRAC 7 &amp; 8 firmware &lt; 2525252 Description Dell EMC iDRAC7/iDRAC8, versions prior to 2525252, contain CGI injection vulnerability which could be used to execute remote code A remote unauthenticated attacker may potentially be able to use CGI variables to execute remote code This code should cause the iDRAC service to open a reverse

Unsupported GPUs in Dell C4130 get throttled, here's how to prevent this from happening.

Reverse engineering Dell iDRAC to get rid of GPU throttling TL;DR Unsupported GPUs in Dell C4130 get throttled, here's how to prevent this from happening The problem Dell PowerEdge C4130 ("C4130") is a versatile platform, accomodating up to four GPUs per 1U box It is readily available on eBay so it could be used for various custom builds, including SXM2 GPUs O