Idrac7 firmware
This hub aggregates every CVE we track for Idrac7 firmware, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
9
CVEs tracked
1
Critical
4
High
0
In CISA KEV
Severity distribution
HIGH4MEDIUM3LOW1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 9 most recently published vulnerabilities affecting Idrac7 firmware.
- CVE-2020-5344Dell EMC iDRAC7, iDRAC8 and iDRAC9 versions prior to 2.65.65.65, 2.70.70.70, 4.00.00.00 contain a stack-based buffer overflow vulnerability. An unauthenticated remote attacker may exploit this vuln...7.0
- CVE-2019-3764Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.36 contain an improper authorization vulnerability. A remote authenticated mal...4.3
- CVE-2019-3705Buffer Overflow Vulnerability9.8
- CVE-2018-15776iDRAC7, iDRAC8 - Improper Error Handling6.4
- CVE-2018-15774iDRAC7/iDRAC8/iDRAC9 - Privilege Escalation Vulnerability3.8
- CVE-2018-1243iDRAC6/iDRAC7/iDRAC8 - Weak CGI session ID vulnerability7.5
- CVE-2018-1244iDRAC7/iDRAC8/iDrac9 contains a command injection vulnerability in the SNMP agent.8.8
- CVE-2016-5685Dell iDRAC7 and iDRAC8 devices with firmware before 2.40.40.40 allow authenticated users to gain Bash shell access through a string injection.8.8
- CVE-2013-3589Cross-site scripting (XSS) vulnerability in the login page in the Administrative Web Interface on Dell iDRAC6 monolithic devices with firmware before 1.96 and iDRAC7 devices with firmware before 1....4.3
Product normalization is registry-driven with AI assist and human review. How it works