cve/2021/CVE-2021-21572.md

18 lines
765 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2021-21572](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-21572)
![](https://img.shields.io/static/v1?label=Product&message=BIOSConnect&color=blue)
2025-09-29 21:09:30 +02:00
![](https://img.shields.io/static/v1?label=Version&message=unspecified%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-122%3A%20Heap-based%20Buffer%20Overflow&color=brightgreen)
2024-05-25 21:48:12 +02:00
### Description
Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.
### POC
#### Reference
2025-09-29 21:09:30 +02:00
- https://www.dell.com/support/kbdoc/en-us/000188682
2024-05-25 21:48:12 +02:00
#### Github
2025-09-29 21:09:30 +02:00
No PoCs found on GitHub currently.
2024-05-25 21:48:12 +02:00