CVE-2022-24422

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
26/05/2022
Last modified:
07/06/2022

Description

Dell iDRAC9 versions 5.00.00.00 and later but prior to 5.10.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the VNC Console.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:idrac9:*:*:*:*:*:*:*:* 5.00.00.00 (including) 5.10.10.00 (excluding)