PoC Index

CVE-2021-21551

KEVHIGH 8.8EPSS 79.2%

Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.

CVSS v3.1
7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
8.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS v2.0
4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS
79.25% chance of exploitation in the next 30 days, 100th percentile
CISA KEV
added 2022-03-31
Published
2021-05-04
Updated
2025-10-21

Proof-of-concept exploits (17)

Metasploit modules (1)

ExploitDB entries (1)

Exploit collections (1)

References

Related