Database/Firmware, BMC & network fabric
Dell iDRAC Service Module (iSM, incorrect permissions): Incorrect permission assignment on a critical resource lets
CVE-2025-38742Firmware, BMC & network fabriccurated
Impact
Incorrect permission assignment on a critical resource lets a low-privileged local user reach code execution via the iSM agent.
Who can reach it
Low-privilege local account on the host OS.
What to do
Upgrade iSM to 6.0.3.0. Package update and service restart only.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.