7.5
CVSSv3

CVE-2018-1211

Published: 23/03/2018 Updated: 19/04/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Dell EMC iDRAC7/iDRAC8, versions before 2.52.52.52, contain a path traversal vulnerability in its Web server's URI parser which could be used to obtain specific sensitive data without authentication. A remote unauthenticated attacker may be able to read configuration settings from the iDRAC by querying specific URI strings.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dell emc idrac8

dell emc idrac7