Skip to content
Dell TechnologiesCVE-2026-79940

Dell Technologies iDRAC9: improper access control

Medium5.9CVE-2026-79940 · Published Aug 26, 2026 · updated Aug 28, 2026

Dell iDRAC9, 14G versions prior to 7.00.00.182 and 15G/16G versions prior to 7.20.30.50, contains an Improper Access Control vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to gaining access to unauthorized data.

Dell Technologies advisory

Affected versions

PackageAffectedFixed in
iDRAC9
Product
< 7.20.30.50 or later7.20.30.50 or later
< 7.00.00.182 or later7.00.00.182 or later
Details and references

More Dell Technologies advisories

All Dell Technologies
Advisory
Dell Technologies Cyber Recovery: improper authentication
High7.6Aug 26
Dell PowerProtect Cyber Recovery
Medium5.8Aug 26
Dell Technologies Cloud Disaster Recovery: server-side request forgery
Medium4.3Aug 26
Dell Technologies PowerProtect One: command injection
High8.8Aug 26
Dell Technologies PowerProtect One: tampering
Medium6.5Aug 26
Dell Technologies PowerProtect One: improper certificate validation
Medium5.9Aug 26

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.