Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated malicious administrator could exploit this vulnerability to bypass excessive NVMe password attempt mitigations in order to carry out a brute force attack.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| dell | latitude_5310_2-in-1_firmware | 1.7.0 | - |
| dell | latitude_5320_firmware | 1.7.0 | - |
| dell | latitude_5400_firmware |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L
21
Affected Products
2
References
dell / latitude_5310_2-in-1_firmware
| 1.7.1 |
| - |
| dell | latitude_5411_firmware | 1.6.0 | - |
| dell | latitude_5500_firmware | 1.8.0 | - |
| dell | latitude_5520_firmware | 1.6.0 | - |
| dell | latitude_5511_firmware | 1.7.1 | - |
| dell | latitude_7212_rugged_extreme_tablet_firmware | 1.7.0 | - |
| dell | latitude_7280_firmware | 1.9.1 | - |
| dell | latitude_7320_firmware | 1.7.0 | - |
| dell | latitude_7370_firmware | 1.7.1 | - |
| dell | latitude_7420_firmware | 1.7.0 | - |
| dell | latitude_7480_firmware | 1.7.1 | - |
| dell | latitude_9410_firmware | 1.7.1 | - |
| dell | latitude_9510_firmware | 1.7.0 | - |
| dell | latitude_9520_firmware | 1.6.0 | - |
| dell | optiplex_3080_firmware | 1.5.2 | - |
| dell | optiplex_3280_aio_firmware | 1.2.0 | - |
| dell | optiplex_7480_aio_firmware | 1.2.0 | - |
| dell | precision_3551_ffirmware | 1.6.2 | - |
| dell | precision_3640_tower_firmware | 1.7.1 | - |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L
Exploitability
Impact