Known vulnerabilities in iDRAC9

Vendor: Dell
Software: iDRAC9
Software CPE: cpe:2.3:a:dell:idrac9:*:*:*:*:*:*:*:*
Total vulnerabilities: 53
Public exploits: 5
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting iDRAC9 iDRAC9 is affected by 53 known vulnerabilities: 13 high, 27 medium, 13 low Critical High Medium Low

Vulnerabilities (53)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU141560 - Improper Access Control
CVE-2025-60876
CWE-284 Medium
No
No
7.00.00.184, 7.30.30.51 12.08.2026 SB2026081244
SB2026081245
SB2026081252
and 9 more
#VU124278 - NULL Pointer Dereference
CVE-2026-32778
CWE-476 Low
No
No
7.00.00.184, 7.30.30.51 24.03.2026 SB2026032435
SB2026033028
SB2026033199
and 17 more
#VU124277 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-32777
CWE-835 Medium
No
No
7.00.00.184, 7.30.30.51 24.03.2026 SB2026032435
SB2026032436
SB2026032437
and 25 more
#VU124274 - NULL Pointer Dereference
CVE-2026-32776
CWE-476 Medium
No
No
7.00.00.184, 7.30.30.51 24.03.2026 SB2026032435
SB2026032765
SB2026033028
and 22 more
#VU122268 - Integer overflow
CVE-2026-25210
CWE-190 High
No
No
7.00.00.184, 7.30.30.51 03.02.2026 SB2026020364
SB20260205121
SB2026020611
and 23 more
#VU108746 - Integer overflow
CVE-2025-29088
CWE-190 Medium
No
No
7.00.00.184, 7.20.80.50 07.05.2025 SB2025050709
SB2025052942
SB2025060215
and 3 more
#VU104034 - Improper input validation
CVE-2025-26466
CWE-20 Medium
Available
No
7.00.00.181, 7.20.30.50 18.02.2025 SB2025021815
SB2025021830
SB2025021840
and 25 more
#VU100566 - Off-by-one Error
CVE-2024-52533
CWE-193 High
No
No
7.00.00.181, 7.20.30.50 15.11.2024 SB20241115147
SB20241115148
SB20241115149
and 71 more
#VU99614 - Improper input validation
CVE-2024-50602
CWE-20 Medium
No
No
7.00.00.181, 7.20.30.50 01.11.2024 SB2024110155
SB2024110182
SB2024110534
and 98 more
#VU96899 - Integer overflow
CVE-2024-45492
CWE-190 High
No
No
7.00.00.181, 7.20.30.50 05.09.2024 SB20240905100
SB20240905101
SB20240905102
and 108 more
#VU96898 - Integer overflow
CVE-2024-45491
CWE-190 High
No
No
7.00.00.181, 7.20.30.50 05.09.2024 SB20240905100
SB20240905101
SB20240905102
and 106 more
#VU96897 - Buffer Underwrite ('Buffer Underflow')
CVE-2024-45490
CWE-124 High
No
No
7.00.00.181, 7.20.30.50 05.09.2024 SB20240905100
SB20240905101
SB20240905102
and 113 more
#VU95093 - Improper input validation
CVE-2024-42154
CWE-20 Low
No
No
7.00.00.174 31.07.2024 SB20240731176
SB2024081301
SB2024081648
and 64 more
#VU88822 - Memory corruption
CVE-2024-2961
CWE-119 High
Available
Exploited
7.00.00.181, 7.20.30.50 18.04.2024 SB2024041855
SB2024041856
SB2024041857
and 107 more
#VU88378 - Resource exhaustion
CVE-2023-52340
CWE-400 Medium
No
No
7.00.00.174 10.04.2024 SB2024041034
SB2024041037
SB2024041038
and 80 more
#VU87337 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2024-28757
CWE-611 Medium
No
No
7.00.00.184, 7.30.30.51 11.03.2024 SB2024031135
SB2024031143
SB2024031144
and 74 more
#VU86231 - Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2023-52426
CWE-776 Medium
No
No
7.00.00.184, 7.30.30.51 07.02.2024 SB2024020750
SB2024020754
SB2024020765
and 23 more
#VU86230 - Resource exhaustion
CVE-2023-52425
CWE-400 Medium
No
No
7.00.00.184, 7.30.30.51 07.02.2024 SB2024020750
SB2024020754
SB2024020765
and 120 more
#VU85935 - Integer overflow
CVE-2023-6780
CWE-190 Low
No
No
7.00.00.181, 7.20.30.50 31.01.2024 SB2024013126
SB2024013135
SB2024013136
and 6 more
#VU68718 - Use After Free
CVE-2022-43680
CWE-416 Medium
No
No
7.00.00.184, 7.30.30.51 25.10.2022 SB2022102560
SB2022102566
SB2022103010
and 99 more


Showing elements 1 - 20 out of 53