CVE-2021-36284
Summary
| CVE | CVE-2021-36284 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-09-28 20:15:00 UTC |
| Updated | 2021-10-04 14:25:00 UTC |
| Description | Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive admin password attempt mitigations in order to carry out a brute force attack. |
Risk And Classification
Problem Types: CWE-307
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Dell | Latitude 5310 2-in-1 | - | All | All | All |
| Operating System | Dell | Latitude 5310 2-in-1 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 5320 | - | All | All | All |
| Operating System | Dell | Latitude 5320 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 5400 | - | All | All | All |
| Operating System | Dell | Latitude 5400 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 5411 | - | All | All | All |
| Operating System | Dell | Latitude 5411 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 5500 | - | All | All | All |
| Operating System | Dell | Latitude 5500 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 5511 | - | All | All | All |
| Operating System | Dell | Latitude 5511 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 5520 | - | All | All | All |
| Operating System | Dell | Latitude 5520 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 7212 Rugged Extreme Tablet | - | All | All | All |
| Operating System | Dell | Latitude 7212 Rugged Extreme Tablet Firmware | All | All | All | All |
| Hardware | Dell | Latitude 7280 | - | All | All | All |
| Operating System | Dell | Latitude 7280 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 7320 | - | All | All | All |
| Operating System | Dell | Latitude 7320 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 7370 | - | All | All | All |
| Operating System | Dell | Latitude 7370 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 7420 | - | All | All | All |
| Operating System | Dell | Latitude 7420 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 7480 | - | All | All | All |
| Operating System | Dell | Latitude 7480 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 9410 | - | All | All | All |
| Operating System | Dell | Latitude 9410 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 9510 | - | All | All | All |
| Operating System | Dell | Latitude 9510 Firmware | All | All | All | All |
| Hardware | Dell | Latitude 9520 | - | All | All | All |
| Operating System | Dell | Latitude 9520 Firmware | All | All | All | All |
| Hardware | Dell | Optiplex 3080 | - | All | All | All |
| Operating System | Dell | Optiplex 3080 Firmware | All | All | All | All |
| Hardware | Dell | Optiplex 3280 Aio | - | All | All | All |
| Operating System | Dell | Optiplex 3280 Aio Firmware | All | All | All | All |
| Hardware | Dell | Optiplex 7480 Aio | - | All | All | All |
| Operating System | Dell | Optiplex 7480 Aio Firmware | All | All | All | All |
| Hardware | Dell | Precision 3551 | - | All | All | All |
| Operating System | Dell | Precision 3551 Ffirmware | All | All | All | All |
| Hardware | Dell | Precision 3640 Tower | - | All | All | All |
| Operating System | Dell | Precision 3640 Tower Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Access Denied | MISC | www.dell.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.