Vulnerability Details CVE-2021-21557
Dell PowerEdge Server BIOS and select Dell Precision Rack BIOS contain an out-of-bounds array access vulnerability. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of service, arbitrary code execution, or information disclosure in System Management Mode.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 12.4%
CVSS Severity
CVSS v3 Score 8.1
CVSS v2 Score 7.2
Products affected by CVE-2021-21557
-
cpe:2.3:h:dell:poweredge_c4140:-
-
cpe:2.3:h:dell:poweredge_c6420:-
-
cpe:2.3:h:dell:poweredge_c6525:-
-
cpe:2.3:h:dell:poweredge_fc640:-
-
cpe:2.3:h:dell:poweredge_m640:-
-
cpe:2.3:h:dell:poweredge_m640p:-
-
cpe:2.3:h:dell:poweredge_mx740c:-
-
cpe:2.3:h:dell:poweredge_mx840c:-
-
cpe:2.3:h:dell:poweredge_r240:-
-
cpe:2.3:h:dell:poweredge_r340:-
-
cpe:2.3:h:dell:poweredge_r440:-
-
cpe:2.3:h:dell:poweredge_r540:-
-
cpe:2.3:h:dell:poweredge_r640:-
-
cpe:2.3:h:dell:poweredge_r6415:-
-
cpe:2.3:h:dell:poweredge_r6515:-
-
cpe:2.3:h:dell:poweredge_r6525:-
-
cpe:2.3:h:dell:poweredge_r740:-
-
cpe:2.3:h:dell:poweredge_r740xd2:-
-
cpe:2.3:h:dell:poweredge_r740xd:-
-
cpe:2.3:h:dell:poweredge_r7415:-
-
cpe:2.3:h:dell:poweredge_r7425:-
-
cpe:2.3:h:dell:poweredge_r7515:-
-
cpe:2.3:h:dell:poweredge_r7525:-
-
cpe:2.3:h:dell:poweredge_r840:-
-
cpe:2.3:h:dell:poweredge_r940:-
-
cpe:2.3:h:dell:poweredge_r940xa:-
-
cpe:2.3:h:dell:poweredge_t140:-
-
cpe:2.3:h:dell:poweredge_t340:-
-
cpe:2.3:h:dell:poweredge_t440:-
-
cpe:2.3:h:dell:poweredge_t640:-
-
cpe:2.3:h:dell:poweredge_xr2:-
-
cpe:2.3:o:dell:poweredge_c4140_firmware:-
-
cpe:2.3:o:dell:poweredge_c6420_firmware:-
-
cpe:2.3:o:dell:poweredge_c6525_firmware:-
-
cpe:2.3:o:dell:poweredge_fc640_firmware:-
-
cpe:2.3:o:dell:poweredge_m640_firmware:-
-
cpe:2.3:o:dell:poweredge_m640p_firmware:-
-
cpe:2.3:o:dell:poweredge_mx740c_firmware:-
-
cpe:2.3:o:dell:poweredge_mx740c_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_mx840c_firmware:-
-
cpe:2.3:o:dell:poweredge_mx840c_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_r240_firmware:-
-
cpe:2.3:o:dell:poweredge_r340_firmware:-
-
cpe:2.3:o:dell:poweredge_r440_firmware:-
-
cpe:2.3:o:dell:poweredge_r540_firmware:-
-
cpe:2.3:o:dell:poweredge_r640_firmware:-
-
cpe:2.3:o:dell:poweredge_r640_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_r6415_firmware:-
-
cpe:2.3:o:dell:poweredge_r6515_firmware:-
-
cpe:2.3:o:dell:poweredge_r6525_firmware:-
-
cpe:2.3:o:dell:poweredge_r740_firmware:-
-
cpe:2.3:o:dell:poweredge_r740_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_r740xd2_firmware:-
-
cpe:2.3:o:dell:poweredge_r740xd_firmware:-
-
cpe:2.3:o:dell:poweredge_r740xd_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_r7415_firmware:-
-
cpe:2.3:o:dell:poweredge_r7425_firmware:-
-
cpe:2.3:o:dell:poweredge_r7515_firmware:-
-
cpe:2.3:o:dell:poweredge_r7525_firmware:-
-
cpe:2.3:o:dell:poweredge_r840_firmware:-
-
cpe:2.3:o:dell:poweredge_r840_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_r940_firmware:-
-
cpe:2.3:o:dell:poweredge_r940_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_r940xa_firmware:-
-
cpe:2.3:o:dell:poweredge_r940xa_firmware:2.9.4
-
cpe:2.3:o:dell:poweredge_t140_firmware:-
-
cpe:2.3:o:dell:poweredge_t340_firmware:-
-
cpe:2.3:o:dell:poweredge_t440_firmware:-
-
cpe:2.3:o:dell:poweredge_t640_firmware:-
-
cpe:2.3:o:dell:poweredge_xr2_firmware:-