CVE-2021-36285

Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive NVMe password attempt mitigations in order to carry out a brute force attack.
References
Link Resource
https://www.dell.com/support/kbdoc/000191495/ Vendor Advisory
Configurations

Configuration 1


Information

Published : 2021-09-28 08:15

Updated : 2021-10-04 02:27


NVD link : CVE-2021-36285

Mitre link : CVE-2021-36285

Products Affected
CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts