Security Advisory

CVE-2022-34436

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-01-18 11:15:59
Last updated 2025-04-03 18:07:19
Assigner dell
CVSS score 2.7
State PUBLISHED

Description

Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.