CVE-2021-21551 is an insufficient access control vulnerability in the Dell dbutil_2_3.sys driver, affecting Dell products. This high-severity vulnerability (CVSS 7.8) allows a local authenticated user to achieve escalation of privileges, denial of service, or information disclosure with low attack complexity. It is actively exploited in the wild, with public exploit modules available in Metasploit and ExploitDB, and has garnered significant community and media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.3CPE matchmatch criteria | cpe:2.3:a:dell:dbutil:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.