Vulnerability Details CVE-2021-36284
Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive admin password attempt mitigations in order to carry out a brute force attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 15.1%
CVSS Severity
CVSS v3 Score 5.7
CVSS v2 Score 2.1
Products affected by CVE-2021-36284
-
cpe:2.3:h:dell:latitude_5310_2-in-1:-
-
cpe:2.3:h:dell:latitude_5320:-
-
cpe:2.3:h:dell:latitude_5400:-
-
cpe:2.3:h:dell:latitude_5411:-
-
cpe:2.3:h:dell:latitude_5500:-
-
cpe:2.3:h:dell:latitude_5511:-
-
cpe:2.3:h:dell:latitude_5520:-
-
cpe:2.3:h:dell:latitude_7212_rugged_extreme_tablet:-
-
cpe:2.3:h:dell:latitude_7280:-
-
cpe:2.3:h:dell:latitude_7320:-
-
cpe:2.3:h:dell:latitude_7370:-
-
cpe:2.3:h:dell:latitude_7420:-
-
cpe:2.3:h:dell:latitude_7480:-
-
cpe:2.3:h:dell:latitude_9410:-
-
cpe:2.3:h:dell:latitude_9510:-
-
cpe:2.3:h:dell:latitude_9520:-
-
cpe:2.3:h:dell:optiplex_3080:-
-
cpe:2.3:h:dell:optiplex_3280_aio:-
-
cpe:2.3:h:dell:optiplex_7480_aio:-
-
cpe:2.3:h:dell:precision_3551:-
-
cpe:2.3:h:dell:precision_3640_tower:-
-
cpe:2.3:o:dell:latitude_5310_2-in-1_firmware:-
-
cpe:2.3:o:dell:latitude_5320_firmware:-
-
cpe:2.3:o:dell:latitude_5400_firmware:-
-
cpe:2.3:o:dell:latitude_5400_firmware:1.3.11
-
cpe:2.3:o:dell:latitude_5400_firmware:1.6.3
-
cpe:2.3:o:dell:latitude_5411_firmware:-
-
cpe:2.3:o:dell:latitude_5500_firmware:-
-
cpe:2.3:o:dell:latitude_5500_firmware:1.3.11
-
cpe:2.3:o:dell:latitude_5500_firmware:1.6.3
-
cpe:2.3:o:dell:latitude_5500_firmware:1.7.4
-
cpe:2.3:o:dell:latitude_5511_firmware:-
-
cpe:2.3:o:dell:latitude_5520_firmware:-
-
cpe:2.3:o:dell:latitude_7212_rugged_extreme_tablet_firmware:-
-
cpe:2.3:o:dell:latitude_7280_firmware:-
-
cpe:2.3:o:dell:latitude_7320_firmware:-
-
cpe:2.3:o:dell:latitude_7370_firmware:-
-
cpe:2.3:o:dell:latitude_7420_firmware:-
-
cpe:2.3:o:dell:latitude_7480_firmware:-
-
cpe:2.3:o:dell:latitude_9410_firmware:-
-
cpe:2.3:o:dell:latitude_9510_firmware:-
-
cpe:2.3:o:dell:latitude_9520_firmware:-
-
cpe:2.3:o:dell:optiplex_3080_firmware:-
-
cpe:2.3:o:dell:optiplex_3280_aio_firmware:*
-
cpe:2.3:o:dell:optiplex_7480_aio_firmware:*
-
cpe:2.3:o:dell:precision_3551_ffirmware:*
-
cpe:2.3:o:dell:precision_3640_tower_firmware:-