High severity7.5NVD Advisory· Published Sep 28, 2021· Updated Jun 17, 2026
CVE-2021-36283
CVE-2021-36283
Description
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
87- cpe:2.3:o:dell:inspiron_5400_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.5.0
- cpe:2.3:o:dell:inspiron_7391_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.9.1
- cpe:2.3:o:dell:inspiron_7500_2-in-1_silver_firmware:*:*:*:*:*:*:*:*Range: <1.5.0
- cpe:2.3:o:dell:latitude_3310_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.17.1
- cpe:2.3:o:dell:latitude_5300_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.12.1
- cpe:2.3:o:dell:latitude_5310_2_in_1_firmware:1.4.2:*:*:*:*:*:*:*
- cpe:2.3:o:dell:latitude_7200_2_in_1_firmware:*:*:*:*:*:*:*:*Range: <1.10.1
- cpe:2.3:o:dell:latitude_7210_2_in_1_firmware:*:*:*:*:*:*:*:*Range: <1.5.1
- cpe:2.3:o:dell:latitude_7220ex_rugged_extreme_tablet_firmware:*:*:*:*:*:*:*:*Range: <1.9.1
- cpe:2.3:o:dell:latitude_7400_2-in-1_firmware:*:*:*:*:*:*:*:*Range: <1.10.0
- cpe:2.3:o:dell:optiplex_3280_aio_firmware:*:*:*:*:*:*:*:*Range: <1.3.1
- cpe:2.3:o:dell:optiplex_5480_aio_firmware:*:*:*:*:*:*:*:*Range: <1.4.0
- cpe:2.3:o:dell:optiplex_7480_aio_firmware:*:*:*:*:*:*:*:*Range: <1.6.2
- cpe:2.3:o:dell:optiplex_7780_aio_firmware:*:*:*:*:*:*:*:*Range: <1.6.2
- cpe:2.3:o:dell:precision_3640_tower_firmware:*:*:*:*:*:*:*:*Range: <1.4.3
Patches
Vulnerability mechanics
References
1- www.dell.com/support/kbdoc/000191495/nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.