Loading
Dell EMC iDRAC7/iDRAC8, versions prior to 2.52.52.52, contain a path traversal vulnerability in its Web server's URI parser which could be used to obtain specific sensitive data without authentication. A remote unauthenticated attacker may be able to read configuration settings from the iDRAC by querying specific URI strings.
Use CWE-22, Dell vendor hub and Emc Idrac7 product page to widen CVE-2018-1211 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-1207 for nearby disclosures in the same product family. Additional editorial context is available in The Weekly Cybersecurity Brief: February 27th, 2026.