Idrac9 Dell Idrac9

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Dell Idrac9.

By the Year

In 2026 there have been 3 vulnerabilities in Dell Idrac9 with an average score of 5.5 out of ten. Last year, in 2025 Idrac9 had 1 security vulnerability published. That is, 2 more vulnerabilities have already been reported in 2026 as compared to last year. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.63.




Year Vulnerabilities Average Score
2026 3 5.53
2025 1 4.90
2024 1 9.80
2023 1 4.90
2022 1 9.80

It may take a day or so for new Idrac9 vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Dell Idrac9 Security Vulnerabilities

Dell iDRAC9/10 OS Command Injection pre-7.30.10.50
CVE-2026-23855 7.2 - High - September 09, 2026

Dell iDRAC9, 14G versions prior to 7.00.00.184, 15G/16G versions prior to 7.30.10.50, and Dell iDRAC10, 17G versions prior to 1.30.30.50, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to command injection.

Shell injection

Unauthenticated Remote Access: Improper Access Control in Dell iDRAC9 <7.20.30.50
CVE-2026-79940 5.9 - Medium - August 26, 2026

Dell iDRAC9, 14G versions prior to 7.00.00.182 and 15G/16G versions prior to 7.20.30.50, contains an Improper Access Control vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to gaining access to unauthorized data.

Authorization

Dell iDRAC9/10 < 7.20.30.50/1.20.60.50: Remanent Memory Read (Info Disclosure)
CVE-2026-70412 3.5 - Low - August 17, 2026

Dell iDRAC9, versions prior to 7.20.30.50, and Dell iDRAC10, version prior to 1.20.60.50, contain a Remanent Data Readable after Memory Erase vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

Remanent Data Readable after Memory Erase

Dell PowerEdge BIOS/ iDRAC9 Info Disclosure (CVE-2025-26482)
CVE-2025-26482 4.9 - Medium - September 25, 2025

Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information Disclosure.

Exposure of Sensitive System Information Due to Uncleared Debug Information

Dell iDRAC9 Session Hijack via IPMI Before v7.10.50 (Arbitrary Execution)
CVE-2024-25943 9.8 - Critical - June 29, 2024

iDRAC9, versions prior to 7.00.00.172 for 14th Generation and 7.10.50.00 for 15th and 16th Generations, contains a session hijacking vulnerability in IPMI. A remote attacker could potentially exploit this vulnerability, leading to arbitrary code execution on the vulnerable application.

Dell iDRAC9 v6.00.02.00 & earlier Racadm lockdown bypass, allows privileged firmware update
CVE-2022-34435 4.9 - Medium - January 18, 2023

Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.

Improper Input Validation

Dell iDRAC9 versions 5.00.00.00 and later but prior to 5.10.10.00, contain an improper authentication vulnerability
CVE-2022-24422 9.8 - Critical - May 26, 2022

Dell iDRAC9 versions 5.00.00.00 and later but prior to 5.10.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the VNC Console.

authentification

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Dell Idrac9 or by Dell? Click the Watch button to subscribe.

Dell
Vendor

Dell Idrac9
Product

subscribe