Dell Integrated Dell Remote Access Controller Path Traversal Vulnerability Allowing Unauthorized Access

Vulnerability

A path traversal vulnerability has been identified in Dell Integrated Dell Remote Access Controller (iDRAC) 9 and 10. This vulnerability affects iDRAC9, 14G versions prior to 7.00.00.181, 15G and 16G versions from 6.10.80.00 to 7.20.10.50, and iDRAC10, 17G versions prior to 1.20.25.00. The vulnerability allows a high-privileged attacker with remote access to exploit the issue, potentially leading to unauthorized access.

Impact

Exploitation of this vulnerability could result in unauthorized access to the affected system.

Remediation

Users can update to iDRAC9 versions 7.00.00.181 or later, or iDRAC10 versions 1.20.25.00 or later. The specific update links can be found on the Dell Support website.

Added: Nov 6, 2025, 7:20 PM
Updated: Nov 6, 2025, 7:50 PM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
5.0
exploitability
4.4
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.