CVE-2021-21551

HIGH KEV

Dell Dbutil < 2.3 - Denial of Service

Title source: rule

Description

Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.

Exploits (16)

exploitdb WORKING POC
by Paolo Stagno · localwindows
https://www.exploit-db.com/exploits/49893
nomisec WORKING POC 235 stars
by waldo-irc · local
https://github.com/waldo-irc/CVE-2021-21551
nomisec WORKING POC 85 stars
by tijme · local
https://github.com/tijme/kernel-mii
nomisec WORKING POC 58 stars
by mathisvickie · poc
https://github.com/mathisvickie/CVE-2021-21551
nomisec WORKING POC 32 stars
by ihack4falafel · local
https://github.com/ihack4falafel/Dell-Driver-EoP-CVE-2021-21551
nomisec WORKING POC 26 stars
by nanabingies · local
https://github.com/nanabingies/CVE-2021-21551
nomisec WORKING POC 25 stars
by ch3rn0byl · local
https://github.com/ch3rn0byl/CVE-2021-21551
nomisec WORKING POC 24 stars
by mzakocs · local
https://github.com/mzakocs/CVE-2021-21551-POC
nomisec WORKING POC 1 stars
by Eap2468 · local
https://github.com/Eap2468/CVE-2021-21551
nomisec WORKING POC 1 stars
by arnaudluti · poc
https://github.com/arnaudluti/PS-CVE-2021-21551
gitlab WORKING POC
by securitystuffbackup · remote
https://gitlab.com/securitystuffbackup/CVE-2021-21551
nomisec WORKING POC
by bengabay1994 · local
https://github.com/bengabay1994/cve-2021-21551-PoC
nomisec WORKING POC
by luke0x90 · local
https://github.com/luke0x90/CVE-2021-21551
nomisec WORKING POC
by IlanDudnik · local
https://github.com/IlanDudnik/CVE-2021-21551
vulncheck_xdb WORKING POC
local
https://github.com/jbaines-r7/dellicious
metasploit WORKING POC GOOD
by Kasif Dekel, SentinelLabs, Spencer McIntyre · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/local/cve_2021_21551_dbutil_memmove.rb

Scores

CVSS v3 8.8
EPSS 0.6198
EPSS Percentile 98.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Details

CISA KEV 2022-03-31
VulnCheck KEV 2022-03-31
InTheWild.io 2021-05-17
ENISA EUVD EUVD-2021-8823
CWE
CWE-782
Status published
Products (1)
dell/dbutil < 2.3
Published May 04, 2021
KEV Added Mar 31, 2022
Tracked Since Feb 18, 2026