GPU VulnDB

Database/Firmware, BMC & network fabric

Dell iDRAC9: Authentication bypass in the iDRAC9 web interface — full out-of-band control of the server

CVE-2019-3706Firmware, BMC & network fabriccurated

Impact

Authentication bypass in the iDRAC9 web interface — full out-of-band control of the server

Who can reach it

Network, unauthenticated

What to do

iDRAC firmware update via Lifecycle Controller or racadm; can be scripted fleet-wide but requires a reboot window on older iDRAC lines

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.