CVE-2025-27689

Dell iDRAC Tools, version(s) prior to 11.3.0.0, contain(s) an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:idrac_tools:*:*:*:*:*:*:*:*

History

13 Jan 2026, 19:41

Type Values Removed Values Added
CWE NVD-CWE-noinfo
References () https://www.dell.com/support/kbdoc/en-us/000323242/dsa-2025-169-security-update-for-dell-idrac-tools-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000323242/dsa-2025-169-security-update-for-dell-idrac-tools-vulnerabilities - Vendor Advisory
First Time Dell
Dell idrac Tools
CPE cpe:2.3:a:dell:idrac_tools:*:*:*:*:*:*:*:*

16 Jun 2025, 12:32

Type Values Removed Values Added
Summary
  • (es) Dell iDRAC Tools, versiones anteriores a la 11.3.0.0, presentan una vulnerabilidad de control de acceso inadecuado. Un atacante con pocos privilegios y acceso local podría explotar esta vulnerabilidad, lo que conllevaría una elevación de privilegios.

12 Jun 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-12 21:15

Updated : 2026-01-13 19:41


NVD link : CVE-2025-27689

Mitre link : CVE-2025-27689

CVE.ORG link : CVE-2025-27689


JSON object : View

Products Affected

dell

  • idrac_tools
CWE
CWE-284

Improper Access Control

NVD-CWE-noinfo