PT-2020-18431 · Dell Emc · Idrac9

Georgiy Kiguradze

+2

·

Published

2020-07-09

·

Updated

2020-07-15

·

CVE-2020-5366

CVSS v3.1

7.1

High

AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions Dell EMC iDRAC9 versions prior to 4.20.20.20
Description The issue allows a remote authenticated malicious user with low privileges to potentially gain unauthorized read access to arbitrary files by manipulating input parameters.
Recommendations For versions prior to 4.20.20.20, update to version 4.20.20.20 or later to resolve the issue.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2020-5366

Affected Products

Idrac9