CVE-2021-21552

MEDIUM

Dell Wyse Windows Embedded System WIE10 LTSC < 2019 - Authenticated Authorization Bypass

Title source: llm
STIX 2.1

Description

Dell Wyse Windows Embedded System versions WIE10 LTSC 2019 and earlier contain an improper authorization vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to bypass the restricted environment and perform unauthorized actions on the affected system.

Scores

CVSS v3 5.2
EPSS 0.0100
EPSS Percentile 58.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N

Details

CWE
CWE-863
Status published
Products (1)
microsoft/windows_10 < 2019
Published May 21, 2021
Tracked Since Feb 18, 2026