Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive admin password attempt mitigations in order to carry out a brute force attack.

Project Subscriptions

Vendors Products
Latitude 5310 2-in-1 Subscribe
Latitude 5310 2-in-1 Firmware Subscribe
Latitude 5320 Subscribe
Latitude 5320 Firmware Subscribe
Latitude 5400 Subscribe
Latitude 5400 Firmware Subscribe
Latitude 5411 Subscribe
Latitude 5411 Firmware Subscribe
Latitude 5500 Subscribe
Latitude 5500 Firmware Subscribe
Latitude 5511 Subscribe
Latitude 5511 Firmware Subscribe
Latitude 5520 Subscribe
Latitude 5520 Firmware Subscribe
Latitude 7212 Rugged Extreme Tablet Subscribe
Latitude 7212 Rugged Extreme Tablet Firmware Subscribe
Latitude 7280 Subscribe
Latitude 7280 Firmware Subscribe
Latitude 7320 Subscribe
Latitude 7320 Firmware Subscribe
Latitude 7370 Subscribe
Latitude 7370 Firmware Subscribe
Latitude 7420 Subscribe
Latitude 7420 Firmware Subscribe
Latitude 7480 Subscribe
Latitude 7480 Firmware Subscribe
Latitude 9410 Subscribe
Latitude 9410 Firmware Subscribe
Latitude 9510 Subscribe
Latitude 9510 Firmware Subscribe
Latitude 9520 Subscribe
Latitude 9520 Firmware Subscribe
Optiplex 3080 Subscribe
Optiplex 3080 Firmware Subscribe
Optiplex 3280 Aio Subscribe
Optiplex 3280 Aio Firmware Subscribe
Optiplex 7480 Aio Subscribe
Optiplex 7480 Aio Firmware Subscribe
Precision 3551 Subscribe
Precision 3551 Ffirmware Subscribe
Precision 3640 Tower Subscribe
Precision 3640 Tower Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-22904 Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive admin password attempt mitigations in order to carry out a brute force attack.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2024-09-17T02:20:32.730Z

Reserved: 2021-07-08T00:00:00

Link: CVE-2021-36284

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-09-28T20:15:07.623

Modified: 2024-11-21T06:13:25.473

Link: CVE-2021-36284

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses