CVE-2021-21552: High severity windows 10 vulnerability
Dell Wyse Windows Embedded System versions WIE10 LTSC 2019 and earlier contain an improper authorization vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to bypass the restricted environment and perform unauthorized actions on the affected system.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-21552?
CVE-2021-21552 is a vulnerability found in Dell Wyse Windows Embedded System versions WIE10 LTSC 2019 and earlier, which allows a local authenticated malicious user to bypass restricted environment and perform unauthorized actions.
What is the severity of CVE-2021-21552?
The severity of CVE-2021-21552 is high with a CVSS score of 8.8.
How can CVE-2021-21552 be exploited?
CVE-2021-21552 can be exploited by a local authenticated malicious user with low privileges to bypass the restricted environment and perform unauthorized actions.
Is Dell Wyse 5070 Thin Client affected by CVE-2021-21552?
No, Dell Wyse 5070 Thin Client is not affected by CVE-2021-21552.
Is there a security update available for CVE-2021-21552?
Yes, Dell has released a security update for CVE-2021-21552. Please refer to the following link for more information: https://www.dell.com/support/kbdoc/en-us/000186134/dsa-2021-096-dell-wyse-windows-embedded-system-security-update-for-an-improper-authorization-vulnerability