Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions 6.10.80.00 through 7.20.10.50 and Dell Integrated Dell Remote Access Controller 10, 17G versions prior to 1.20.25.00, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.
Metrics
Affected Vendors & Products
References
History
Fri, 07 Nov 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell
Dell integrated Dell Remote Access Controller 10 Dell integrated Dell Remote Access Controller 9 |
|
| Vendors & Products |
Dell
Dell integrated Dell Remote Access Controller 10 Dell integrated Dell Remote Access Controller 9 |
Thu, 06 Nov 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 06 Nov 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions 6.10.80.00 through 7.20.10.50 and Dell Integrated Dell Remote Access Controller 10, 17G versions prior to 1.20.25.00, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: dell
Published: 2025-11-06T18:46:04.736Z
Updated: 2025-11-06T19:30:39.315Z
Reserved: 2025-01-06T13:40:01.387Z
Link: CVE-2025-22397
Updated: 2025-11-06T19:30:34.833Z
Status : Awaiting Analysis
Published: 2025-11-06T19:15:41.153
Modified: 2025-11-06T19:45:09.883
Link: CVE-2025-22397
No data.