Dell EMC iDRAC9 versions prior to 4.40.40.00 contain a DOM-based...
Vulnerability Description
Dell EMC iDRAC9 versions prior to 4.40.40.00 contain a DOM-based cross-site scripting vulnerability. A remote attacker could potentially exploit this vulnerability to run malicious HTML or JavaScript in a victim’s browser by tricking a victim in to following a specially crafted link.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-21577
Credits & Attribution
No credits recorded in the NVD database.
References
More from Dell
View All →Affected Vendor
Dell
View all reports →