ZeroHour

CVE-2021-36283

CVSS 3.1
6.7 medium
EPSS
<1%p16
Published
()
Modified
Description

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

Vendors
dell
Products
chengming 3990 firmware, chengming 3991 firmware, g3 15 3500 firmware, g3 15 3590 firmware, g3 15 5500 firmware, inspiron 3493 firmware, inspiron 3501 firmware, inspiron 3593 firmware, inspiron 3793 firmware, inspiron 3880 firmware, inspiron 3881 firmware, inspiron 5400 2-in-1 firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.