Dell EMC iDRAC9 versions prior to 4.32.10.00 and 4.40.00.00 contain...
Vulnerability Description
Dell EMC iDRAC9 versions prior to 4.32.10.00 and 4.40.00.00 contain a reflected cross-site scripting vulnerability in the iDRAC9 web application. A remote attacker could potentially exploit this vulnerability to run malicious HTML or JavaScript in a victim’s browser by tricking a victim in to following a specially crafted link.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-26198
Credits & Attribution
No credits recorded in the NVD database.
More from Dell
View All →Affected Vendor
Dell
View all reports →