CVE-2021-36283
—CVSS 3.1
6.7 medium
EPSS
<1%p16
Published
()
Modified
Description
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
- Vendors
- dell
- Products
- chengming 3990 firmware, chengming 3991 firmware, g3 15 3500 firmware, g3 15 3590 firmware, g3 15 5500 firmware, inspiron 3493 firmware, inspiron 3501 firmware, inspiron 3593 firmware, inspiron 3793 firmware, inspiron 3880 firmware, inspiron 3881 firmware, inspiron 5400 2-in-1 firmware
- Weakness
- CWE-20
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.