CVE-2021-21551
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.
- Published May 4, 2021
- CVSS 7.8 high
- 79.2% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
- A Metasploit module exploits it
Affected software
In the news
- New Dell System Update flaw lets hackers gain root privileges BleepingComputer ·
- Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes The Hacker News ·
- Dell asks admins to patch max severity CSM flaws as soon as possible BleepingComputer ·