Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-94894
HistoryAug 04, 2021 - 12:00 a.m.

Dell EMC iDRAC9 Cross-Site Scripting Vulnerability (CNVD-2021-94894)

2021-08-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.001 Low

EPSS

Percentile

45.5%

Dell EMC iDRAC9 is a hardware and software-based system management solution from Dell (DELL). The solution provides remote management, crash recovery and power control for Dell PowerEdge systems. iDRAC9 versions prior to Dell EMC 5.00.00.00 contain a cross-site scripting vulnerability. A remote attacker could exploit the vulnerability by tricking users into visiting a specially crafted link to run malicious HTML or JavaScript in the victim user’s browser.

CPENameOperatorVersion
DELL Dell EMC iDRAC9 <5.eq00.00.00

0.001 Low

EPSS

Percentile

45.5%

Related for CNVD-2021-94894