Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity Low
Privileges Required High
Scope Changed
Confidentiality Impact High
Integrity Impact High
Availability Impact Low
User Interaction None
No CVSS v3.0
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
This CVE is not in the KEV list.
The EPSS score is 0.00024.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Dell
Subscribe
|
Poweredge C4140
Subscribe
Poweredge C4140 Firmware
Subscribe
Poweredge C6420
Subscribe
Poweredge C6420 Firmware
Subscribe
Poweredge C6525
Subscribe
Poweredge C6525 Firmware
Subscribe
Poweredge Fc640
Subscribe
Poweredge Fc640 Firmware
Subscribe
Poweredge M640
Subscribe
Poweredge M640 Firmware
Subscribe
Poweredge M640p
Subscribe
Poweredge M640p Firmware
Subscribe
Poweredge Mx740c
Subscribe
Poweredge Mx740c Firmware
Subscribe
Poweredge Mx840c
Subscribe
Poweredge Mx840c Firmware
Subscribe
Poweredge R240
Subscribe
Poweredge R240 Firmware
Subscribe
Poweredge R340
Subscribe
Poweredge R340 Firmware
Subscribe
Poweredge R440
Subscribe
Poweredge R440 Firmware
Subscribe
Poweredge R540
Subscribe
Poweredge R540 Firmware
Subscribe
Poweredge R640
Subscribe
Poweredge R640 Firmware
Subscribe
Poweredge R6415
Subscribe
Poweredge R6415 Firmware
Subscribe
Poweredge R6515
Subscribe
Poweredge R6515 Firmware
Subscribe
Poweredge R6525
Subscribe
Poweredge R6525 Firmware
Subscribe
Poweredge R740
Subscribe
Poweredge R740 Firmware
Subscribe
Poweredge R740xd
Subscribe
Poweredge R740xd2
Subscribe
Poweredge R740xd2 Firmware
Subscribe
Poweredge R740xd Firmware
Subscribe
Poweredge R7415
Subscribe
Poweredge R7415 Firmware
Subscribe
Poweredge R7425
Subscribe
Poweredge R7425 Firmware
Subscribe
Poweredge R7515
Subscribe
Poweredge R7515 Firmware
Subscribe
Poweredge R7525
Subscribe
Poweredge R7525 Firmware
Subscribe
Poweredge R840
Subscribe
Poweredge R840 Firmware
Subscribe
Poweredge R940
Subscribe
Poweredge R940 Firmware
Subscribe
Poweredge R940xa
Subscribe
Poweredge R940xa Firmware
Subscribe
Poweredge T140
Subscribe
Poweredge T140 Firmware
Subscribe
Poweredge T340
Subscribe
Poweredge T340 Firmware
Subscribe
Poweredge T440
Subscribe
Poweredge T440 Firmware
Subscribe
Poweredge T640
Subscribe
Poweredge T640 Firmware
Subscribe
Poweredge Xr2
Subscribe
Poweredge Xr2 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
Configuration 27 [-]
| AND |
|
Configuration 28 [-]
| AND |
|
Configuration 29 [-]
| AND |
|
Configuration 30 [-]
| AND |
|
Configuration 31 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-8829 | Dell PowerEdge Server BIOS and select Dell Precision Rack BIOS contain an out-of-bounds array access vulnerability. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of service, arbitrary code execution, or information disclosure in System Management Mode. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/000187958 |
|
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T17:02:41.587Z
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-21557
No data.
Status : Modified
Published: 2021-06-14T19:15:08.497
Modified: 2024-11-21T05:48:35.620
Link: CVE-2021-21557
No data.
OpenCVE Enrichment
No data.
EUVD