CVE-2021-36299
Summary
| CVE | CVE-2021-36299 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-11-23 20:15:00 UTC |
| Updated | 2021-11-27 03:49:00 UTC |
| Description | Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to the affected application. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 730379 Dell Precision Rack Security Update for Multiple iDRAC Vulnerabilities (DSA-2021-177) -iDRAC 8,9