> Source: [sk179184](https://support.checkpoint.com/results/sk/sk179184)

# sk179184 - Check Point Response to CVE-2022-24422 - Dell iDRAC9 Security Update for an Improper Authentication Vulnerability

| Property | Value |
|----------|-------|
| Solution ID | sk179184 |
| Date Created | 2022-05-15 |
| Last Modified | 2025-02-09 |
| Technical Level | General |
| Products | Security Management Server |
| Versions | R82.10, R82, R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |
| Platform | Smart-1 |

## Symptoms

- Dell published [CVE-2022-24422](https://www.cve.org/CVERecord?id=CVE-2022-24422) for iDRAC9 versions 5.00.00.00 and higher but lower than 5.10.10.00. These versions contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to gain access to the VNC Console.

## Cause

Refer to Dell's [DSA-2022-068: Dell iDRAC9 Security Update for an Improper Authentication Vulnerability](https://www.dell.com/support/kbdoc/he-il/000199267/dsa-2022-068-dell-idrac9-security-update-for-an-improper-authentication-vulnerability).

<br />

## Solution

**Important Note** : If you have not enabled iDRAC (as described in [sk122914)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk122914), your Smart-1 appliance is **not** affected.  

If you have enabled iDRAC, upgrade to the final version for your Smart-1 appliance model. For instructions, refer to [sk122914 - Enabling LOM (iDRAC) Management for Smart-1 525/5050/5150/625/6000-L/6000-XL/600-M Appliances](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk122914) \> section "*iDRAC Firmware Upgrade Path* ".

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
