VYPR
Unrated severityNVD Advisory· Published Jan 18, 2023· Updated Apr 3, 2025

CVE-2022-34435

CVE-2022-34435

Description

Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set. A remote high privileged attacker could exploit this vulnerability to bypass the firmware lock-down configuration and perform a firmware update.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A high-privileged attacker can bypass the firmware lock-down setting in Dell iDRAC9 prior to 6.00.30.00 via improper input validation in Racadm, enabling unauthorized firmware updates.

Vulnerability

An improper input validation vulnerability exists in the racadm command-line interface of Dell iDRAC9 versions before 6.00.30.00 [1]. When the firmware lock-down configuration is set, the software fails to properly validate certain inputs, allowing a remote high-privileged attacker to bypass the lockdown and perform a firmware update [1]. The vulnerability affects all iDRAC9 versions prior to 6.00.30.00 [1].

Exploitation

An attacker must already have a high-privileged account (e.g., administrator) on the iDRAC9 management interface [1]. With that access, the attacker can send a crafted racadm command that exploits the input validation flaw to bypass the firmware lock-down setting [1]. No additional user interaction is required beyond the attacker's existing privileged session. The attack is performed remotely over the network [1].

Impact

Successful exploitation allows the attacker to bypass the firmware lock-down protection and install a modified or unauthorized firmware image on the iDRAC9 [1]. This can lead to a complete compromise of the iDRAC management controller, potentially giving the attacker persistent control over the server's management plane and the ability to hide malicious activity from the host operating system [1]. The confidentiality, integrity, and availability of the system may be severely impacted [1].

Mitigation

Dell has released iDRAC9 version 6.00.30.00 to fix this vulnerability [1]. Users must update their iDRAC9 firmware to version 6.00.30.00 or later [1]. The update is available from the Dell support site [1]. No workaround is provided in the advisory. The vulnerability is not listed on the CISA Known Exploited Vulnerabilities (KEV) catalog as of this writing.

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.