← Back to browse · API

CVE-2022-24422

Severity
CRITICAL
CVSS
9.6
EPSS
0.56796
Risk score
58.28
CISA KEV
No
PoC
No
Published
2022-05-26
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2022-29314, GHSA-MVFF-2PPV-C3FR
Products
Dell:Integrated Dell Remote Access Controller 9 unspecified <5.10.10.00
Sources
euvd EUVD-2022-29314

Description

Dell iDRAC9 versions 5.00.00.00 and later but prior to 5.10.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the VNC Console.

References