AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-1249

MEDIUM · CVSS 6.5 EPSS 0.89%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-07-02 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-1249
Severity
MEDIUM
CVSS
6.5
EPSS
0.89%

Original NVD Description

Dell EMC iDRAC9 versions prior to 3.21.21.21 did not enforce the use of TLS/SSL for a connection to iDRAC web server for certain URLs. A man-in-the-middle attacker could use this vulnerability to strip the SSL/TLS protection from a connection between a client and a server.