CVE-2021-21505

HIGH

Dell EMC Integrated System for Microsoft Azure Stack Hub <2011 - Pr...

Title source: llm
STIX 2.1

Description

Dell EMC Integrated System for Microsoft Azure Stack Hub, versions 1906 – 2011, contain an undocumented default iDRAC account. A remote unauthenticated attacker, with the knowledge of the default credentials, could potentially exploit this to log in to the system to gain root privileges.

Scores

CVSS v3 8.0
EPSS 0.0541
EPSS Percentile 90.2%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-1188 CWE-255
Status published
Products (1)
dell/emc_integrated_system_for_microsoft_azure_stack_hub_firmware 1906 - 2011
Published May 06, 2021
Tracked Since Feb 18, 2026