CVE-2022-34436
18.01.2023, 12:15
Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.Enginsight
Vendor | Product | Version |
---|---|---|
dell | idrac8_firmware | 𝑥 < 2.84.84.84 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration