Dell iDRAC6 Multiple Vulnerabilities

critical Nessus Plugin ID 68905

Synopsis

The remote device is affected by multiple vulnerabilities.

Description

The remote Dell Integrated Remote Access Controller 6 (iDRAC6) is affected by the following vulnerabilities :

- A flaw exists in the testurls.html page that allows a remote attacker to authenticate as root. A remote attacker can exploit this to enable root user access over SSH, telnet, and other services. (CVE-2013-4785)

- A flaw exists in the Intelligent Platform Management Interface (IPMI) implementation due to improper handling of connections. An unauthenticated, remote attacker can exploit this to exhaust system resources, resulting in a denial of service condition.

Solution

Upgrade to firmware version 1.95 or later.

See Also

http://fish2.com/ipmi/dell/secret.html

http://www.nessus.org/u?3cf7ce9b

http://www.nessus.org/u?bbbee7cf

Plugin Details

Severity: Critical

ID: 68905

File Name: drac_testurls_bypass.nasl

Version: 1.9

Type: remote

Family: CGI abuses

Published: 7/16/2013

Updated: 4/11/2022

Configuration: Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:dell:idrac6_firmware

Required KB Items: installed_sw/iDRAC

Exploit Available: true

Exploit Ease: Exploits are available

Exploited by Nessus: true

Patch Publication Date: 2/21/2013

Vulnerability Publication Date: 6/15/2013

Reference Information

CVE: CVE-2013-4785

BID: 60668