Dell iDRAC Service Module Improper Access Control Vulnerability Allowing Privilege Escalation

Vulnerability

A vulnerability has been identified in Dell iDRAC Service Module (iSM) for Windows, versions prior to 6.0.3.1, and for Linux, versions prior to 5.4.1.1. This vulnerability involves improper access control, which could be exploited by a low-privileged attacker with local access, potentially leading to unauthorized elevation of privileges.

Impact

Exploitation of this vulnerability could allow a low-privileged user with local access to gain elevated privileges on the system.

Remediation

Users can upgrade to Dell iDRAC Service Module for Windows version 6.0.3.1 or later, or Dell iDRAC Service Module for Linux version 5.4.1.1 or later. The updated versions can be downloaded from the Dell Support website.

Added: Feb 12, 2026, 3:18 AM
Updated: Feb 12, 2026, 3:18 AM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
2.5
exploitability
3.3
remediation
7.7
relevance
2.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.