Medium severity5.9NVD Advisory· Published Jun 24, 2021· Updated Jun 17, 2026
CVE-2021-21571
CVE-2021-21571
Description
Dell UEFI BIOS https stack leveraged by the Dell BIOSConnect feature and Dell HTTPS Boot feature contains an improper certificate validation vulnerability. A remote unauthenticated attacker may exploit this vulnerability using a person-in-the-middle attack which may lead to a denial of service and payload tampering.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
131- cpe:2.3:o:dell:inspiron_14_5418_firmware:*:*:*:*:*:*:*:*Range: <2.1.0_a06
- cpe:2.3:o:dell:inspiron_15_5518_firmware:*:*:*:*:*:*:*:*Range: <2.1.0_a06
- cpe:2.3:o:dell:inspiron_5400_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.7.0
- cpe:2.3:o:dell:inspiron_5400_aio_firmware:*:*:*:*:*:*:*:*Range: <1.4.0
- cpe:2.3:o:dell:inspiron_5401_aio_firmware:*:*:*:*:*:*:*:*Range: <1.4.0
- cpe:2.3:o:dell:inspiron_5406_2n1_firmware:*:*:*:*:*:*:*:*Range: <1.5.1
- cpe:2.3:o:dell:inspiron_5410_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <2.1.0
- cpe:2.3:o:dell:inspiron_7300_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.3.0
- cpe:2.3:o:dell:inspiron_7306_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.5.1
- cpe:2.3:o:dell:inspiron_7500_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.3.0
- cpe:2.3:o:dell:inspiron_7700_aio_firmware:*:*:*:*:*:*:*:*Range: <1.4.0
- cpe:2.3:o:dell:inspiron_7706_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.5.1
- cpe:2.3:o:dell:latitude_5310_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.7.0
- cpe:2.3:o:dell:latitude_5320_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.7.1
- cpe:2.3:o:dell:latitude_7210_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.7.0
- cpe:2.3:o:dell:latitude_7320_detachable_firmware:*:*:*:*:*:*:*:*Range: <1.4.0_a04
- cpe:2.3:o:dell:optiplex_3090_uff_firmware:*:*:*:*:*:*:*:*Range: <1.2.0
- cpe:2.3:o:dell:optiplex_3280_all-in-one_firmware:*:*:*:*:*:*:*:*Range: <1.7.0
- cpe:2.3:o:dell:optiplex_5090_tower_firmware:*:*:*:*:*:*:*:*Range: <1.1.35
- cpe:2.3:o:dell:optiplex_5490_aio_firmware:*:*:*:*:*:*:*:*Range: <1.3.0
- cpe:2.3:o:dell:optiplex_7090_tower_firmware:*:*:*:*:*:*:*:*Range: <1.1.35
- cpe:2.3:o:dell:optiplex_7090_uff_firmware:*:*:*:*:*:*:*:*Range: <1.2.0
- cpe:2.3:o:dell:optiplex_7480_all-in-one_firmware:*:*:*:*:*:*:*:*Range: <1.7.0
- cpe:2.3:o:dell:optiplex_7490_all-in-one_firmware:*:*:*:*:*:*:*:*Range: <1.3.0
- cpe:2.3:o:dell:optiplex_7780_all-in-one_firmware:*:*:*:*:*:*:*:*Range: <1.7.0
- cpe:2.3:o:dell:precision_17_m5750_firmware:*:*:*:*:*:*:*:*Range: <1.8.2
- cpe:2.3:o:dell:precision_3650_mt_firmware:*:*:*:*:*:*:*:*Range: <1.2.0
- Dell/UEFI BIOS https stackv5Range: Gen 11, Gen 10
Patches
Vulnerability mechanics
References
1- www.dell.com/support/kbdoc/en-us/000188682nvdVendor Advisory
News mentions
0No linked articles in our index yet.