CVE-2026-35155: Dell IDRAC10 Firmware
High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.
Dell iDRAC10, versions 1.20.70.50 and 1.30.05.10, contains an Insufficiently Protected Credentials vulnerability. A race condition vulnerability exists that could allow an authenticated low‑privileged attacker to gain elevated access.
Affected products
- Dell IDRAC10 Firmware: before 1.30.10.50 (fixed in 1.30.10.50)
Published 2026-04-29. Last modified 2026-06-17.