Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-94895
HistoryAug 04, 2021 - 12:00 a.m.

Dell EMC iDRAC9 Cross-Site Scripting Vulnerability (CNVD-2021-94895)

2021-08-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
8

0.001 Low

EPSS

Percentile

45.5%

Dell EMC iDRAC9 is a hardware and software-based system management solution from Dell (DELL). The solution provides remote management, crash system recovery and power control for Dell PowerEdge systems. cross-site scripting vulnerability exists in versions prior to Dell EMC iDRAC9 4.40.40.00. A remote attacker could exploit this vulnerability to run malicious HTML or JavaScript in the victim user’s browser.

CPENameOperatorVersion
DELL Dell EMC iDRAC9 <4.eq40.40.00

0.001 Low

EPSS

Percentile

45.5%

Related for CNVD-2021-94895