cbcvebase.
CVE-2021-36284
published 2021-09-28

CVE-2021-36284: Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this…

medium4.4CVSS 3.1
AVLACLPRHUINSUCHINAN
Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive admin password attempt mitigations in order to carry out a brute force attack.

Affected

22 ranges
VendorProductVersion rangeFixed in
dellcpg_bios>= unspecified < 1.7.01.7.0
delllatitude_5310_2-in-1_firmware< 1.7.01.7.0
delllatitude_5320_firmware< 1.7.01.7.0
delllatitude_5400_firmware< 1.7.11.7.1
delllatitude_5411_firmware< 1.6.01.6.0
delllatitude_5500_firmware< 1.8.01.8.0
delllatitude_5511_firmware< 1.7.11.7.1
delllatitude_5520_firmware< 1.6.01.6.0
delllatitude_7212_rugged_extreme_tablet_firmware< 1.7.01.7.0
delllatitude_7280_firmware< 1.9.11.9.1
delllatitude_7320_firmware< 1.7.01.7.0
delllatitude_7370_firmware< 1.7.11.7.1
delllatitude_7420_firmware< 1.7.01.7.0
delllatitude_7480_firmware< 1.7.11.7.1
delllatitude_9410_firmware< 1.7.11.7.1
delllatitude_9510_firmware< 1.7.01.7.0
delllatitude_9520_firmware< 1.6.01.6.0
delloptiplex_3080_firmware< 1.5.21.5.2
delloptiplex_3280_aio_firmware< 1.2.01.2.0
delloptiplex_7480_aio_firmware< 1.2.01.2.0
dellprecision_3551_ffirmware< 1.6.21.6.2
dellprecision_3640_tower_firmware< 1.7.11.7.1