> Source: [sk122914](https://support.checkpoint.com/results/sk/sk122914)

# sk122914 - Enabling LOM (iDRAC) Management for Smart-1 525 / 625 / 600-M / 5050 / 5150 / 6000-L / 6000-XL Appliances

| Property | Value |
|----------|-------|
| Solution ID | sk122914 |
| Date Created | 2018-02-12 |
| Last Modified | 2026-08-12 |
| Technical Level | General |
| Products | Security Management Server |
| Versions | R82.10, R82, R81.20, R82.20 |
| OS | Gaia |
| Platform | Smart-1 |

## Solution

**Table of Contents:**

* Workflow for LOM (iDRAC)
* LOM (iDRAC) Support
* iDRAC Firmware Upgrade Path
* iDRAC Firmware Upgrade Instructions
* Working with iDRAC
* Recommended Features
* Installing Gaia OS (R81.20 and higher) in iDRAC on Smart-1 6000-L / Smart-1 6000-XL models
* Configuring the iDRAC WebUI to use only TLS 1.3 ciphers
* iDRAC CVE Vulnerabilities
* Known Limitations

Click Here to Show the Entire Article

Workflow for LOM (iDRAC) {#Workflow}
------------------------------------

By default, the LOM (iDRAC) is disabled in Smart-1 appliances.

To work with the LOM (iDRAC):

|------|------------------------------------------------------------------|-------------------------------------------------------------------------------|
| Step | Instructions                                                     | Section in this Article                                                       |
| 1    | Only in R80.10 - R80.30 versions: Install the required hotfix.   | See LOM (iDRAC) Support                                                       |
| 2    | Upgrade the default iDRAC Firmware to the latest "Final" version | 1. See iDRAC Firmware Upgrade Path 2. See iDRAC Firmware Upgrade Instructions |
| 3    | Enable an iDRAC user                                             | See Working with iDRAC                                                        |
| 4    | Use LOM (iDRAC)                                                  | See Recommended Features                                                      |

LOM (iDRAC) Support {#iDRAC_Support}
------------------------------------

Show / Hide this section  

|----------------|------------------------------------------------------------------------------------------------|----------------------------------------------------------------------------------------------------------------------------------|
| Gaia Version   | Appliance Model                                                                                | Prerequisite Hotfix                                                                                                              |
| R81 and higher | Smart-1 6000-XL Smart-1 6000-L Smart-1 5150 Smart-1 5050 Smart-1 625 Smart-1 600-M Smart-1 525 | No hotfix is required.                                                                                                           |
| R80.40         | Smart-1 5150 Smart-1 5050 Smart-1 625 Smart-1 525                                              | No hotfix is required.                                                                                                           |
| R80.30         | Smart-1 5150 Smart-1 5050 Smart-1 525                                                          | [R80.30 Jumbo Hotfix Accumulator](https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.30/Default.htm), Take 217 or higher. ^(\*)^ |
| R80.20         | Smart-1 5150 Smart-1 5050 Smart-1 525                                                          | [R80.20 Jumbo Hotfix Accumulator](https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.20/Default.htm), Take 183 or higher. ^(\*)^ |
| R80.10         | Smart-1 5150 Smart-1 5050 Smart-1 525                                                          | [R80.10 Jumbo Hotfix Accumulator](https://support.checkpoint.com/results/sk/sk116380), Take 283 or higher. ^(\*)^                |

**^(\*)^ Important** - Before you install the Jumbo Hotfix Accumulator, we strongly recommend to export the management database from the Smart-1 appliance (see the [CLI Reference Guide](https://support.checkpoint.com/product/184#f-commonsource=C.%20Documentation) for your version \> Chapter "Security Management Server Commands" \> Section "migrate_server"). You can import the configuration database at a later time.

<br />

iDRAC Firmware Upgrade Path {#iDRAC_Firmware_Upgrade_Path}
----------------------------------------------------------

Show / Hide this section  
**Note** - For some Smart-1 models, it is necessary to upgrade the default iDRAC firmware to the "Middle" version. Only afterward, it is possible to upgrade the iDRAC firmware to the "Final" version.

Enter the string to filter this table:

|------------------------------------------------|---------------|--------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| Smart-1 Appliance Model                        | iDRAC Version | Default Firmware Version | Firmware Middle Version                                                                                                                                                                                                                                                                                                                                             | Firmware Final Version                                                                                                                                                                                                                  |
| Smart-1 6000-L, Smart-1 6000-XL, Smart-1 600-M | iDRAC9        | v4.40.0.0                | Not Required                                                                                                                                                                                                                                                                                                                                                        | **To upgrade Smart-1 6000-XL / Smart-1 6000-L / Smart-1 600-M to firmware v7.00.00.184 (Final version):** * **For R81 and higher:** [Check Point firmware for iDRAC9 (Take 35)](https://support.checkpoint.com/results/download/144825) |
| Smart-1 5150, Smart-1 5050                     | iDRAC9        | v3.15.15.15              | **To upgrade Smart-1 5150 / Smart-1 5050 to firmware v3.30.30.30 (Middle version):** * **For R81 and higher:** [Check Point firmware for iDRAC9 (Take 17)](https://support.checkpoint.com/results/download/116310) * **For R80.10 / R80.20 / R80.30 / R80.40:** [Check Point firmware for iDRAC9 (Take 17)](https://support.checkpoint.com/results/download/116308) | **To upgrade Smart-1 5150 / Smart-1 5050 to firmware v7.00.00.184 (Final version):** * **For R81 and higher:** [Check Point firmware for iDRAC9 (Take 35)](https://support.checkpoint.com/results/download/144825)                      |
| Smart-1 625                                    | iDRAC9        | v3.30.30.30              | Not Required                                                                                                                                                                                                                                                                                                                                                        | **To upgrade Smart-1 625 to firmware v7.00.00.184 (Final version):** * **For R81 and higher:** [Check Point firmware for iDRAC9 (Take 35)](https://support.checkpoint.com/results/download/144825)                                      |

{#Unique_ID_Firmware_Upgrade_PathTable}   

iDRAC Firmware Upgrade Instructions {#iDRAC_firmware_upgrade_instructions}
--------------------------------------------------------------------------

Show / Hide this section  
**Important** - Schedule a maintenance window. This procedure restarts all Check Point services.

1. Download the applicable CPUSE package with the iDRAC firmware from the section "iDRAC Firmware Upgrade Path".

2. On the Smart-1 appliance, **import** the CPUSE package in Gaia Portal (recommended) or in Gaia Clish.

   See the [CPUSE Administration Guide](https://sc1.checkpoint.com/documents/CPUSE/Default.htm#cshid=ID004).
3. On the Smart-1 appliance, **verify** the CPUSE package in Gaia Portal (recommended) or in Gaia Clish.

   See the [CPUSE Administration Guide](https://sc1.checkpoint.com/documents/CPUSE/Default.htm#cshid=ID004).
4. On the Smart-1 appliance, **install** the CPUSE package in Gaia Portal (recommended) or in Gaia Clish.

   See the [CPUSE Administration Guide](https://sc1.checkpoint.com/documents/CPUSE/Default.htm#cshid=ID004).

**Notes:**

* For more information about CPUSE, see [sk92449 - Check Point Upgrade Service Engine (CPUSE) - Gaia Deployment Agent](https://support.checkpoint.com/results/sk/sk92449).

* During the installation of the iDRAC firmware package, the procedure stops (`cpstop`) and starts (`cpstart`) all Check Point services. This interrupts all activities on the Management Server / Log Server.
* After the installation of the iDRAC firmware package, the Smart-1 appliance does not reboot (it is not necessary).

<br />

<br />

Working with iDRAC {#Working_with_iDRAC}
----------------------------------------

Show / Hide this section  
**Required open ports for LOM (iDRAC) functionality:**

**Note** - It is not possible to change these port numbers in the LOM card (iDRAC).

Traffic from a client computer connects to these ports on the LOM card (iDRAC):

|-------------|----------|-----------------------------------------------------------------------------|
| Port Number | Protocol | Function                                                                    |
| 22          | TCP      | SSH access                                                                  |
| 80          | TCP      | HTTP access to Web UI on LOM (iDRAC)                                        |
| 443         | TCP      | HTTPS access to Web UI on LOM (iDRAC)                                       |
| 5900        | TCP      | Access to Virtual Console keyboard and mouse redirection, and Virtual Media |

**Notes:**

vConsole is supported only through the iDRAC graphical user interface (GUI), which is built on HTML5 (Java or OpenJRE are not officially supported).

* Check Point is in the process of integrating the LOM (iDRAC) with Gaia OS to provide more secured and robust operations. Customers who require LOM (iDRAC) now, are instructed to use it in this fashion:

  **Access should be limited by placing a firewall in front of the LOM (iDRAC) port. Firewall must allow traffic to the LOM (iDRAC) interface (HTTPS, port 443) only from the specific internal IP addresses on your network. These internal IP addresses must be trusted, and their connections to the LOM (iDRAC) interface must be over a trusted network.**

**Important:**

* Creating a user in LOM (iDRAC) can only be done with the `SetiDRACUser` command.

* Creating a user in another way may lead to problems, and is not supported by Check Point.

**Procedure:**

1. Connect to the command line on the Smart-1 appliance (over SSH or a physical console port).

2. Log in.

3. If your default shell is Gaia Clish, go to the Expert mode:

   `expert`
4. Create a new restricted operator iDRAC user using a wizard:

   `SetiDRACUser`
   > Note - You can also use this syntax:
   >
   > `SetiDRACUser <UserID> <UserName> <Password>`
   1. Confirm the EULA.

      Show / Hide examples  
      * **On R80.40 and higher, R80.30 Jumbo Hotfix (Take 163 and higher), and R80.20 Jumbo Hotfix (Take 160 and higher):**

        `Enable access to LOM (iDRAC) in a protected environment only.`  
        `
        Configure a firewall in front of the LOM interface that restricts access to specific sources only. The users must connect over trusted networks.
        `  

        `
        Do you wish to continue (y/n)? y`
      * **On R80.10:**

        `
        Warning!`  

        `
        You are installing a hotfix enabling an administrative control of the Check Point Smart-1 appliance through a LOM interface, being offered to users who have requested to have the LOM interface enabled prior to the release of a formal update. By proceeding with the installation, you acknowledge and agree that this is a preliminary interim solution developed without having undergone Check Point's ordinary testing and development processes and may therefore carry certain vulnerabilities. 
        `  

        `
        You further acknowledge that this hotfix is provided to you for your own internal use and agree to treat it as confidential and proprietary and not allow its release or installation by anyone outside your organization.
        `  

        `
        Do you wish to continue (y/n)? y`
   2. Enter the User ID.

      **Note:** The User ID should be between 3-16 (examples: 5, 7, 12). Write down this User ID.
   3. Enter the desired Username.

   4. Enter the desired User Password.

      Select a strong password.
5. The default IPv4 address and subnet mask of the LOM (iDRAC) port are:

   **192.168.0.100 / 255.255.255.0**

   To change this IPv4 address and subnet mask, run:

   `lomipset <New-IPv4-Address> <New-IPv4-Subnet-Mask> <New-IPv4-Default-Gateway>`

   **Notes:**
   * It takes 1-2 minutes for this change to apply.

   * The Expert mode command "`lomipset`" does not support the configuration of DNS servers or NTP servers on the LOM (iDRAC) card.

   * The Gaia Clish command "`set lom ip-address VALUE subnet-mask VALUE gateway VALUE`" does not support the configuration of DNS servers or NTP servers on the LOM (iDRAC) card.

6. Use LOM (iDRAC) for the required operation on the appliance.

7. Disable the iDRAC user (for security reasons):

   `UnsetiDRACUser <UserID>`

<br />

<br />

Recommended Features {#Recommended_Features}
--------------------------------------------

Show / Hide this section  
If you enable the LOM (iDRAC) support, Check Point recommends that you use the LOM (iDRAC) to work **only** with the features described below.

|------------------------------------------------------------------------------------------------------------------|
| **Warning: Using the LOM (iDRAC) to modify features other than those listed below may present a security risk.** |

The screenshots below illustrate how to navigate to the recommended features on each of the models.

Click an item to show/hide its content:

* Accessing Logs  
  * **In Smart-1 600-M, Smart-1 625, Smart-1 5050, Smart-1 5150, Smart-1 6000-L, Smart-1 6000-XL:**

    Log in and click "**Maintenance**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/11906270450.png)
  * **In Smart-1 525:**

    Log in and click "**Logs**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/Logs-5251802190647.PNG)
* Virtual Console  
  * **In Smart-1 600-M, Smart-1 625, Smart-1 5050, Smart-1 5150, Smart-1 6000-L, Smart-1 6000-XL:**

    Log in and click "**Configuration \> Virtual Console**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/21906270451.png)
  * **In Smart-1 525:**

    Log in and click "**Virtual Console**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/Virtualconsole-5251802190649.PNG)
* Monitoring  
  * **In Smart-1 600-M, Smart-1 625, Smart-1 5050, Smart-1 5150, Smart-1 6000-L, Smart-1 6000-XL:**

    Log in and click "**System**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/31906270451.png)
  * **In Smart-1 525:**

    Log in and click "**Server \> Summary**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/Monitoring-5251802190650.PNG)
* Power Monitoring  
  * **In Smart-1 600-M, Smart-1 625, Smart-1 5050, Smart-1 5150, Smart-1 6000-L, Smart-1 6000-XL:**

    Log in and click "**Configuration \> Power Management**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/41906270453.png)
  * **In Smart-1 525:**

    Log in and click "**Power / Thermal \> Power Monitoring**".

    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122914/Power-5251802190652.PNG)

<br />

<br />

Installing Gaia OS (R81.20 and higher) in iDRAC on Smart-1 6000-L / Smart-1 6000-XL models {#iDRAC_Smart1_6000_models}
----------------------------------------------------------------------------------------------------------------------

Show / Hide this section  
**Important Notes:**

* This section applies only to the Smart-1 6000-L , Smart-1 6000-XL models.
* This section applies only to R81.20 and higher releases.

**There are two available procedures:**

* Installing Gaia OS when the current host Gaia OS is accessible.

  > Show / Hide this section  
  > 1. Connect to the iDRAC web interface.
  >
  > 2. Mount a Virtual Media:
  >
  >    1. Go to **Virtual Console**.
  >
  >    2. Click **Virtual Media**.
  >
  >    3. Click **Connect Virtual Media**.
  >
  >    4. Add the Gaia OS installation image.
  >
  > 3. Change the boot order in the host Gaia OS and reboot:
  >
  >    1. Connect to the command line on the host Gaia OS (from the Virtual Console or through an SSH connection).
  >
  >    2. Log in to the Expert mode.
  >
  >    3. Configure the boot order to start the boot from the VCD-DVD device:
  >
  >       `cpidrac --set_first_boot_device=VCD-DVD`
  >
  >       Note: This command does not show an output.
  >    4. Reboot the appliance:
  >
  >       `reboot`
  > 4. Installation starts during the boot.
  >
  >    > Example:
  >    > ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk180411/sk180411(1)202212151537411.png)
* Installing Gaia OS when the current host Gaia OS is not accessible and requires recovery.

  > Show / Hide this section  
  > 1. Log in to the iDRAC web interface with the user you created with the "`SetiDRACUser`" command during the initial configuration and deployment of the Smart-1 appliance.
  >
  > 2. Re-initialize the RAID through the iDRAC Console connection.
  >
  >    **Important - This is a critical step that forces the appliance to cycle through the boot order. Because the RAID is built from scratch, there is no boot partition. The appliance continues to the next available boot option, and eventually gets to the Virtual Media you connect in Step # 4 below.**
  >    1. Go to **Virtual Console**.
  >
  >    2. Press the **CTRL+R** keys to reboot the appliance.
  >
  >    3. During boot, press the **F2** key to open the BIOS Configuration Utility.
  >
  >    4. From the top, go to the **VD Mgmt** menu.
  >
  >    5. Go to **Disk Group** \> **Virtual Disks** \> select **ID: 0, Virtual Disk**.
  >
  >    6. Press the F2 key \> click on **Initialization** \> select **Fast Init** \> and press the **Enter** key.
  >
  >       Example:
  >
  >       ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk180411/sk180411(2)202212151552571.png)
  >    7. The appliance reboots.
  >
  >    8. During boot, press the **F11** key to open the **Boot Manager**.
  >
  >       ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk180411/sk180411(3)202212151555581.png)
  >    9. Select **One-shot BIOS Boot Menu** and press the **Enter** key.
  >
  > 3. Connect the Gaia ISO file as a Virtual Media. For instructions, see Step 2 above.
  >
  > 4. Reboot the Smart-1 appliance (for example, using the Power button).
  >
  >    > **Important** - The appliance tries to boot from its available boot devices in the order they are configured. Because the RAID is built from scratch, there is no boot partition. The appliance continues to the next available boot option, and eventually gets to the Virtual Media you connected.
  > 5. Installation starts during the boot.
  >
  >    > Example:
  >    >
  >    > ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk180411/sk180411(1)202212151537411.png)

<br />

<br />

Configuring the iDRAC WebUI to use only TLS 1.3 ciphers {#Weak_Ciphers}
-----------------------------------------------------------------------

Show / Hide this section  
1. Connect to the command line on the Check Point appliance.

2. Log in.

3. If the default shell is Gaia Clish, then go to the Expert mode:

   `expert`
4. Configure the iDRAC WebUI to use only TLS 1.3 ciphers:

   `cpidrac --exec_cmd "set iDRAC.Webserver.TLSProtocol 4"`

   Note - To use only TLS 1.2 ciphers, use the value "`2`".
5. Confirm the iDRAC WebUI uses only TLS 1.3 ciphers in one of these ways:

   * In the CLI:

     `cpidrac --exec_cmd "get iDRAC.Webserver.TLSProtocol"`
   * In the iDRAC WebUI:

     1. At the top, click **iDRAC Settings** tab.

     2. In the section **Web Server** , expand the section **Settings**.

     3. The field **TLS Protocol** must show **TLS 1.3 Only**.

<br />

<br />

iDRAC CVE Vulnerabilities {#iDRAC_Vulnerabilities}
--------------------------------------------------

Show / Hide this section  
Enter the string to filter this table:

**Instructions** - Refer to [sk168597 - How to install a Hotfix](https://support.checkpoint.com/results/sk/sk168597).

|-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------------------------------------------|-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------|
| CVE Identifier                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | CVE Title                                                                                                                                                    | CVE and Affected iDRAC Firmware Versions                                                                                                                                                                                                                                                                                                                                                                                                                                                        | Affected Smart-1 Models                                                                                             |
| CVE-2025-29088 CVE-2025-6965 CVE-2024-7055 CVE-2025-1594 CVE-2025-32988 CVE-2025-54349 CVE-2025-54350 CVE-2025-54351 CVE-2025-21704 CVE-2024-57977 CVE-2025-21776 CVE-2025-21814 CVE-2025-21846 CVE-2025-22005 CVE-2025-22063 CVE-2025-37800 CVE-2025-21634 CVE-2025-9714 CVE-2025-21702 CVE-2025-22121 CVE-2025-23142 CVE-2025-37738 CVE-2025-37780 CVE-2025-37796 CVE-2025-37839 CVE-2025-37923 CVE-2025-37928 CVE-2025-24928 CVE-2025-60876 CVE-2025-46394 CVE-2025-68468 CVE-2025-68471 CVE-2026-24401 CVE-2023-1981 CVE-2025-68276 CVE-2023-4641 CVE-2025-68973 CVE-2025-69419 CVE-2026-22796 CVE-2026-22795 CVE-2023-52425 CVE-2024-28757 CVE-2022-43680 CVE-2026-25210 CVE-2023-52426 CVE-2026-32777 CVE-2026-32776 CVE-2026-32778 CVE-2026-24515 CVE-2025-66199 CVE-2025-68160 CVE-2025-69421 CVE-2025-69420 CVE-2025-69418 CVE-2025-11187 CVE-2025-15468 CVE-2025-15469 CVE-2025-15467                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 | Dell iDRAC 9 Updates                                                                                                                                         | Affected iDRAC9 firmware versions - lower than 7.00.00.184                                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 Appliances                                                                                                |
| CVE-2024-54085                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | Redfish Authentication Bypass                                                                                                                                | Not Vulnerable                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | None                                                                                                                |
| CVE-2024-6387                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2024-342: Security Update for Dell iDRAC9 OpenSSH Vulnerability                                                                                          | CVE-2024-6387: * Affected iDRAC9 firmware versions - from 5.10.00.00 to 7.00.00.172 **Note**: iDRAC patched the version of OpenSSH embedded inside of it. The iDRAC OpenSSH banner will continue to report 9.6p1 and may be reported as a false positive by network scanning tools. [DSA-2024-342: Security Update for Dell iDRAC9 OpenSSH Vulnerability \| Dell Israel](https://www.dell.com/support/kbdoc/he-il/000227795/dsa-2024-342-security-update-for-dell-idrac9-openssh-vulnerability) | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2023-48795                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2024-021: Dell iDRAC 8 and Dell iDRAC 9 Security Update for an OpenSSH vulnerability.                                                                    | * Affected iDRAC9 firmware versions - lower than 7.00.00.171 * Affected iDRAC8 firmware versions - lower than 2.86.86.86                                                                                                                                                                                                                                                                                                                                                                        | * Smart-1 Appliances                                                                                                |
| CVE-2022-34435, CVE-2022-34436                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2022-265: Dell iDRAC8 and Dell iDRAC9 Security Update for a RACADM Vulnerability                                                                         | CVE-2022-34435: * Affected iDRAC firmware versions - lower than 6.00.30.00 CVE-2022-34436: * Affected iDRAC firmware versions - lower than 2.84.84.84                                                                                                                                                                                                                                                                                                                                           | * Smart-1 Appliances                                                                                                |
| CVE-2022-0778                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2022-154: Dell iDRAC8 and Dell iDRAC9 Security Update for an OpenSSL Vulnerability                                                                       | CVE-2022-0778: * Affected iDRAC9 firmware versions - lower than 5.10.30.00 * Affected iDRAC8 firmware versions - lower than 2.83.83.83                                                                                                                                                                                                                                                                                                                                                          | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M * Smart-1 525        |
| CVE-2022-24422                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2022-068: Dell iDRAC9 Security Update for an Improper Authentication Vulnerability                                                                       | CVE-2022-24422: * Affected iDRAC9 firmware versions - from 5.00.00.00 to 5.10.10.00                                                                                                                                                                                                                                                                                                                                                                                                             | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2019-3764                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2019-137: iDRAC Improper Authorization Vulnerability                                                                                                     | CVE-2019-3764: * Affected iDRAC9 firmware versions - lower than 3.36.36.36.                                                                                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2020-5344                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2020-063: iDRAC Buffer Overflow Vulnerability                                                                                                            | CVE-2020-5344 * Affected iDRAC9 firmware versions - lower than 4.00.00.00 * Affected iDRAC8 firmware versions - lower than 2.70.70.70 * Affected iDRAC7 firmware versions - lower than to 2.65.65.65                                                                                                                                                                                                                                                                                            | * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 525                                                           |
| CVE-2018-15774, CVE-2018-15776, CVE-2019-3705, CVE-2019-3706, CVE-2019-3707                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     | DSA-2019-059: Dell EMC Network Attached Storage System using Windows Storage Server Security Update for Multiple Hardware Appliance Firmware Vulnerabilities | CVE-2018-15774: * Affected iDRAC9 firmware versions - lower than 3.20.21.20, 3.21.24.22, 3.21.26.22, and 3.23.23.23 CVE-2019-3705, CVE-2019-3706, CVE-2019-3707: * Affected iDRAC9 firmware versions - lower than 3.30.30.30, 3.20.21.20, 3.21.24.22, 3.21.26.22, 3.23.23.23, 3.24.24.24, 3.22.22.22, 3.21.25.22                                                                                                                                                                                | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2020-5366                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2020-128: iDRAC Local File Inclusion Vulnerability                                                                                                       | CVE-2020-5366: * Affected iDRAC9 firmware versions - lower than 4.20.20.20                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| See Advisory                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    | DSA-2021-015: Dell EMC VxRail Appliance Security Update for Multiple Third-Party Component Vulnerabilities                                                   | CVE-2020-26198: * Affected iDRAC9 firmware versions - lower than 4.32.10.00 and 4.40.00.00                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| See Advisory                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    | DSA-2021-021: Dell EMC Integrated Data Protection Appliance Security Update for ACM, DP Advisor, vSphere and BIOS component vulnerabilities                  | CVE-2020-5366: * Affected iDRAC9 firmware versions - lower than 4.20.20.20                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2020-8674, CVE-2020-8738, CVE-2020-8739, CVE-2020-8740, CVE-2020-0587, CVE-2020-0588, CVE-2020-0590, CVE-2020-0591, CVE-2020-0592, CVE-2020-0593, CVE-2020-8705, CVE-2020-8755, CVE-2020-8696, CVE-2020-3992, CVE-2020-3981, CVE-2020-3982, CVE-2020-3993, CVE-2020-3994, CVE-2020-3995, CVE-2020-400, CVE-2020-26198                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       | DSA-2021-006: Dell EMC VxFlex Ready Node Security Update for Multiple Vulnerabilities                                                                        | CVE-2020-26198: * Affected iDRAC9 firmware versions - lower than 4.32.10.00 and 4.40.00.00                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2020-26198                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2020-268: Dell EMC iDRAC9 Reflected XSS Vulnerability                                                                                                    | CVE-2020-26198: * Affected iDRAC9 firmware versions - lower than 4.32.10.00 and 4.40.00.00                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2020-8708, CVE-2020-8730, CVE-2020-8731, CVE-2020-8707, CVE-2020-8719, CVE-2020-8721, CVE-2020-8710, CVE-2020-8711, CVE-2020-8712, CVE-2020-8718, CVE-2020-8722, CVE-2020-8732, CVE-2020-8709, CVE-2020-8723, CVE-2020-8713, CVE-2020-8706, CVE-2020-8729, CVE-2020-8715, CVE-2020-8716, CVE-2020-8714, CVE-2020-8717, CVE-2020-8720, CVE-2020-5366, CVE-2020-2803, CVE-2020-2805, CVE-2020-2816, CVE-2020-2781, CVE-2020-2830, CVE-2020-2767, CVE-2020-2800, CVE-2020-2778, CVE-2020-2764, CVE-2020-2754, CVE-2020-2755, CVE-2020-2773, CVE-2020-2756, CVE-2020-2757, CVE-2020-14664, CVE-2020-14583, CVE-2020-14593, CVE-2020-14562, CVE-2020-14621, CVE-2020-14556, CVE-2020-14573, CVE-2020-14581, CVE-2020-14578, CVE-2020-14579, CVE-2020-14577, CVE-2019-18197                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       | DSA-2020-269: Dell EMC ECS Security Update for Multiple Third-Party Component Vulnerabilities                                                                | CVE-2020-5366: * Affected iDRAC9 firmware versions - lower than 4.20.20.20                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2019-3705, CVE-2019-3706, CVE-2019-3707                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     | DSA-2019-028: Dell EMC iDRAC Multiple Vulnerabilities                                                                                                        | CVE-2019-3705, CVE-2019-3706, and CVE-2019-3707: * Affected iDRAC9 firmware versions - lower than 3.30.30.30, 3.20.21.20, 3.21.24.22, 3.21.26.22, 3.23.23.23, 3.24.24.24, 3.22.22.22, 3.21.25.22                                                                                                                                                                                                                                                                                                | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2018-15774, CVE-2018-15776                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2019-040: Dell EMC VxRack Flex Security Update for Multiple Hardware Appliance Firmware Vulnerabilities                                                  | CVE-2018-15774: * Affected iDRAC9 firmware versions - lower than3.20.21.20, 3.21.24.22, 3.21.26.22, and 3.23.23.23                                                                                                                                                                                                                                                                                                                                                                              | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2018-15774, CVE-2018-15776                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2019-032: Dell EMC Data Domain DD3300 Security Update for Dell EMC iDRAC Vulnerabilities                                                                 | CVE-2018-15774: * Affected iDRAC9 firmware versions - lower than 3.20.21.20, 3.21.24.22, 3.21.26.22 and 3.23.23.23                                                                                                                                                                                                                                                                                                                                                                              | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2020-3962, CVE-2020-3963, CVE-2020-3964, CVE-2020-3965, CVE-2020-3966, CVE-2020-3967, CVE-2020-3968, CVE-2020-3969, CVE-2020-3970, CVE-2020-3953, CVE-2020-3954, CVE-2019-18197, CVE-2020-2754, CVE-2020-2755, CVE-2020-2756, CVE-2020-2757, CVE-2020-2764, CVE-2020-2767, CVE-2020-2773, CVE-2020-14664, CVE-2020-14583, CVE-2020-14593, CVE-2015-9096, CVE-2016-7798, CVE-2017-0898, CVE-2017-0899, CVE-2017-0900, CVE-2017-0901, CVE-2017-0902, CVE-2017-0903, CVE-2017-10784, CVE-2017-14033, CVE-2017-14064, CVE-2017-17405, CVE-2017-17742, CVE-2017-17790, CVE-2017-9103, CVE-2017-9104, CVE-2017-9105, CVE-2017-9109, CVE-2017-9106, CVE-2017-9107, CVE-2017-9108, CVE-2017-9228, CVE-2017-9229, CVE-2018-1000073, CVE-2018-1000074, CVE-2018-1000075, CVE-2018-1000076, CVE-2018-1000077, CVE-2018-1000078, CVE-2018-100007, CVE-2018-1000199, CVE-2018-16395, CVE-2018-16396, CVE-2018-18384, CVE-2018-6914, CVE-2018-8777, CVE-2018-8778, CVE-2018-8779, CVE-2018-8780, CVE-2018-8956, CVE-2019-15845, CVE-2019-16201, CVE-2019-16254, CVE-2019-16255, CVE-2019-18197, CVE-2019-18348, CVE-2019-19462, CVE-2019-19768, CVE-2019-19770, CVE-2019-20806, CVE-2019-20807, CVE-2019-20812, CVE-2019-3701, CVE-2019-8320, CVE-2019-8321, CVE-2019-8322, CVE-2019-8323, CVE-2019-8324, CVE-2019-8325, CVE-2019-9455, CVE-2019-9458, CVE-2019-9674, CVE-2020-0543, CVE-2020-10029, CVE-2020-10663, CVE-2020-10690, CVE-2020-10711, CVE-2020-10720, CVE-2020-10732, CVE-2020-10751, CVE-2020-10757, CVE-2020-10942, CVE-2020-11494, CVE-2020-11669, CVE-2020-11868, CVE-2020-12114, CVE-2020-12243, CVE-2020-12464, CVE-2020-12652, CVE-2020-12653, CVE-2020-12654, CVE-2020-12655, CVE-2020-12656, CVE-2020-12657, CVE-2020-12768, CVE-2020-12769, CVE-2020-13143, CVE-2020-13817, CVE-2020-15025, CVE-2020-1751, CVE-2020-1752, CVE-2020-3898, CVE-2020-8492, CVE-2020-8616, CVE-2020-8617, CVE-2020-8647, CVE-2020-8649, CVE-2020-8834, CVE-2020-9383, CVE-2019-18197, CVE-2020-2754, CVE-2020-2755, CVE-2020-2756, CVE-2020-2757, CVE-2020-2764, CVE-2020-2767, CVE-2020-2773, CVE-2020-14664, CVE-2020-14583, CVE-2020-14593, CVE-2019-17569, CVE-2020-1935, CVE-2020-1938, CVE-2018-8014, CVE-2018-8034, CVE-2018-8037, CVE-2020-0548, CVE-2020-0549, CVE-2020-5366, CVE-2020-3976 | DSA-2020-175: VxRail Appliance Security Update for Multiple Third-Party Component Vulnerabilities                                                            | CVE-2020-5366: * Affected iDRAC9 firmware versions - lower than 4.20.20.20                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2019-3705, CVE-2019-3706, CVE-2019-3707                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     | DSA-2019-082: Dell EMC Data Domain DD3300 Security Update for Dell EMC iDRAC Vulnerabilities                                                                 | CVE-2019-3705: * Affected iDRAC9 firmware versions - lower than 3.20.21.20, 3.21.24.22, 3.21.26.22, and 3.23.23.23 CVE-2019-3706: * Affected iDRAC9 firmware versions - lower than 3.24.24.24, 3.21.26.22, 3.22.22.22, and 3.21.25.22 CVE-2019-3707: * Affected iDRAC9 firmware versions - lower than 3.30.30.30                                                                                                                                                                                | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2019-3764                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2020-032: Dell EMC VxRack Flex Security Update for Dell DMC iDRAC Improper Authorization Vulnerability                                                   | CVE-2019-3764: * Affected iDRAC9 firmware versions - lower than 3.36.36.36                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2018-15774, CVE-2018-15776                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2019-023: Dell EMC ECS Security Update for Multiple Hardware Appliance Firmware Vulnerabilities                                                          | CVE-2018-15774: * Affected iDRAC9 firmware versions - lower than 3.20.21.20, 3.21.24.22, 3.21.26.22, and 3.23.23.23                                                                                                                                                                                                                                                                                                                                                                             | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2019-3707                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2019-058: Dell EMC ECS Security Update for a Hardware Appliance Firmware Vulnerability                                                                   | CVE-2019-3705, CVE-2019-3706, CVE-2019-3707: * Affected iDRAC9 firmware versions - lower than 3.30.30.30, 3.20.21.20, 3.21.24.22, 3.21.26.22, 3.23.23.23, 3.24.24.24, 3.22.22.22, and 3.21.25.22                                                                                                                                                                                                                                                                                                | * Smart-1 5150 * Smart-1 5050                                                                                       |
| CVE-2015-8325, CVE-2016-3115, CVE-2018-12127, CVE-2018-12126, CVE-2018-12130, CVE-2019-11091, CVE-2020-3953, CVE-2020-3954, CVE-2020-0527, CVE-2020-5366, CVE-2020-5344, CVE-2020-3976                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          | DSA-2020-193: Dell EMC VxRail Appliance Security Update for Multiple Third-Party Component Vulnerabilities                                                   | * CVE-2020-5366: Affected iDRAC9 firmware versions - lower than 4.20.20.20 CVE-2020-5344: * Affected iDRAC9 firmware versions - lower than 4.00.00.00                                                                                                                                                                                                                                                                                                                                           | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2020-3976, CVE-2020-5366, CVE-2015-8325, CVE-2016-3115, CVE-2018-12127, CVE-2018-12126, CVE-2018-12130, CVE-2019-11091, CVE-2020-0548, CVE-2020-0549                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        | DSA-2020-213: VxRail Appliance Security Update for Multiple Component Vulnerabilities                                                                        | CVE-2020-5366: * Affected iDRAC9 firmware versions - lower than 4.20.20.20                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2020-5344                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2020-137: Dell EMC VxRail Appliance Security Update for Multiple Third-Party Component Vulnerabilities                                                   | CVE-2020-5344: * Affected iDRAC9 firmware versions - lower than 4.00.00.00                                                                                                                                                                                                                                                                                                                                                                                                                      | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2019-3764                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2020-025: Dell EMC VCF over VxRail Security Update for Dell DMC iDRAC Improper Authorization Vulnerability                                               | CVE-2019-3764: * Affected iDRAC9 firmware versions -lower than 3.36.36.36                                                                                                                                                                                                                                                                                                                                                                                                                       | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2021-21539, CVE-2021-21540, CVE-2021-21541, CVE-2021-21543, CVE-2021-21544                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-073: Dell iDRAC 9 Security Update for Multiple Vulnerabilities                                                                                      | CVE-2021-21539, CVE-2021-21540, CVE-2021-21541, CVE-2021-21543, CVE-2021-21544: * Affected iDRAC9 firmware versions - lower than 4.40.00.00                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 5150 * Smart-1 5050 * Smart-1 625                                                                         |
| CVE-2021-21542                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-073: Dell iDRAC 9 Security Update for Multiple Vulnerabilities                                                                                      | CVE-2021-21542: * Affected iDRAC9 firmware versions - lower than 4.40.10.00 The privileges of the iDRAC operator user are lower than those that can exploit the vulnerability.                                                                                                                                                                                                                                                                                                                  | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-21538                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2020-082: Dell EMC iDRAC 9 Security Update for Improper Authentication Vulnerability                                                                     | CVE-2021-21538: * Affected iDRAC 9 firmware versions - from 4.40.00.00 to 4.40.10.00                                                                                                                                                                                                                                                                                                                                                                                                            | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-21580                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-133: Dell iDRAC Security Update for Multiple Security Vulnerabilities                                                                               | CVE-2021-21580: * Affected iDRAC9 firmware versions - lower than 5.00.00.00 * Affected iDRAC8 firmware versions - lower than 2.80.80.80                                                                                                                                                                                                                                                                                                                                                         | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M * Smart-1 525 <br /> |
| CVE-2021-21581                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-133: Dell iDRAC Security Update for Multiple Security Vulnerabilities                                                                               | CVE-2021-21581: * Affected iDRAC9 firmware versions - lower than 5.00.00.00                                                                                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-21576, CVE-2021-21578, CVE-2021-21579, CVE-2021-21577                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-133: Dell iDRAC Security Update for Multiple Security Vulnerabilities                                                                               | CVE-2021-21576, CVE-2021-21578, CVE-2021-21579, CVE-2021-21577: * Affected iDRAC9 firmware versions - lower than 4.40.40.00                                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-36299, CVE-2021-36300                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-36299, CVE-2021-36300: * Affected iDRAC9 firmware versions - lower than 5.00.00.00                                                                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-36301                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-36301: * Affected iDRAC9 firmware versions - 2.80.80.80 and 4.40.40.00                                                                                                                                                                                                                                                                                                                                                                                                                 | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M * Smart-1 525        |
| CVE-2021-20235                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-20235: * Affected iDRAC9 firmware versions - lower than 5.00.10.20                                                                                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-36348                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-36348: * Affected iDRAC9 firmware versions - lower than 5.00.20.00                                                                                                                                                                                                                                                                                                                                                                                                                     | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M                      |
| CVE-2021-36347                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-36347: * Affected iDRAC9 firmware versions -lower than 5.00.20.00 * Affected iDRAC8 firmware versions - lower than 2.82.82.82 **Note** - For Smart-1 525 appliances, an update for the version 2.82.82.82 will be released in the future. If you need it now, [contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.                                                                                              | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M * Smart-1 525        |
| CVE-2021-36346                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-36346: * Affected iDRAC8 firmware versions - lower than 2.82.82.82 **Note** - For Smart-1 525 appliances, an update for the version 2.82.82.82 will be released in the future. If you need it now, [contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.                                                                                                                                                         | * Smart-1 525                                                                                                       |
| CVE-2021-3712                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | DSA-2021-177: Dell EMC iDRAC Security Update for Multiple Security Vulnerabilities                                                                           | CVE-2021-3712, CVE-2021-36347: * Affected iDRAC9 firmware versions -lower than 5.10.00.00 * Affected iDRAC8 firmware versions - lower than 2.82.82.82 **Note** - For Smart-1 525 appliances, an update for the version 2.82.82.82 will be released in the future. If you need it now, [contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.                                                                               | * Smart-1 6000-XL * Smart-1 6000-L * Smart-1 5150 * Smart-1 5050 * Smart-1 625 * Smart-1 600-M * Smart-1 525        |

{#CVETable}   

Known Limitations {#Known_Limitations}
--------------------------------------

Show / Hide this section  

|------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| Issue ID   | Description                                                                                                                                                                                                                       |
| -          | Gaia ISO installation from iDRAC LOM is not supported for R81.10 and lower versions. **Resolved in R81.20** . See the section "Installing Gaia OS (R81.20 and higher) in iDRAC on Smart-1 6000-L / Smart-1 6000-XL models" above. |
| -          | Access to iDRAC is available only with a restricted operator user.                                                                                                                                                                |
| -          | In iDRAC firmware 4.40.0.0 (End version), if a cable is not connected to the iDRAC port, the IP address is not reported. If a cable is connected to the iDRAC port and linked up, the correct IP address is reported.             |
| PMTR-68408 | It takes about one minute for the Expert mode command "`lomipset`" to apply changes in the network configuration settings.                                                                                                        |

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
