Skip to content
Dell TechnologiesCVE-2026-70412

Dell Technologies iDRAC10: information disclosure

Low3.5CVE-2026-70412 · Published Aug 17, 2026 · updated Aug 18, 2026

Dell iDRAC9, versions prior to 7.20.30.50, and Dell iDRAC10, version prior to 1.20.60.50, contain a Remanent Data Readable after Memory Erase vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

Dell Technologies advisory

Affected versions

PackageAffectedFixed in
iDRAC10
Product
< 1.20.60.50 or later1.20.60.50 or later
iDRAC9
Product
< 7.20.30.50 or later7.20.30.50 or later
Details and references

More Dell Technologies advisories

All Dell Technologies
Advisory
Dell Technologies ObjectScale: uncontrolled search path
High7.3Aug 17
Dell Technologies ObjectScale: command injection
High7.3Aug 17
Dell Technologies ObjectScale: command injection
High7.8Aug 17
Dell Technologies ObjectScale: path traversal
High7.1Aug 17
Dell Technologies ObjectScale: command injection
High7.8Aug 17
Dell Technologies ObjectScale: information disclosure
Medium5.5Aug 17

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.