CVE-2021-21555
Dell PowerEdge R640, R740, R740XD, R840, R940, R940xa, MX740c, MX840c, and T640 Server BIOS contain a heap-based buffer overflow vulnerability in systems with NVDIMM-N installed. A local malicious user with high privileges may potentially exploit this vulnerability, leading to a denial of Service, arbitrary code execution, or information disclosure in UEFI or BIOS Preboot Environment.
Published:Jun 14, 2021
Last Modified:Nov 21, 2024
EPS:Jun 14, 2021
EPSS Score:0.00151
CVSS Score:6.1
Affected Products
Vendor
Product
Action
Vendor
Dell
Product
Poweredge Mx740c
Dell
Poweredge Mx740c
Vendor
Dell
Product
Poweredge Mx740c Firmware
Dell
Poweredge Mx740c Firmware
Vendor
Dell
Product
Poweredge Mx840c
Dell
Poweredge Mx840c
Vendor
Dell
Product
Poweredge Mx840c Firmware
Dell
Poweredge Mx840c Firmware
Vendor
Dell
Product
Poweredge R640
Dell
Poweredge R640
Vendor
Dell
Product
Poweredge R640 Firmware
Dell
Poweredge R640 Firmware
Vendor
Dell
Product
Poweredge R740
Dell
Poweredge R740
Vendor
Dell
Product
Poweredge R740 Firmware
Dell
Poweredge R740 Firmware
Vendor
Dell
Product
Poweredge R740xd
Dell
Poweredge R740xd
Vendor
Dell
Product
Poweredge R740xd Firmware
Dell
Poweredge R740xd Firmware
Vendor
Dell
Product
Poweredge R840
Dell
Poweredge R840
Vendor
Dell
Product
Poweredge R840 Firmware
Dell
Poweredge R840 Firmware
Vendor
Dell
Product
Poweredge R940
Dell
Poweredge R940
Vendor
Dell
Product
Poweredge R940 Firmware
Dell
Poweredge R940 Firmware
Vendor
Dell
Product
Poweredge R940xa
Dell
Poweredge R940xa
Vendor
Dell
Product
Poweredge R940xa Firmware
Dell
Poweredge R940xa Firmware
Vendor
Dell
Product
Poweredge T640
Dell
Poweredge T640
Vendor
Dell
Product
Poweredge T640 Firmware
Dell
Poweredge T640 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
