CVE-2026-40639CWE-261

Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability

Medium · published June 9, 2026

CVSS v3.1
5.7
EPSS
0%
Percentile
8.9
In the wild
Unconfirmed
What it is

Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Elevation of Privileges.

The record
Technical detail
CVSS v3.1
5.7 · MEDIUM
Vector
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS v4.0
Not supplied
EPSS
0.00192 · 8.9th percentile
Weakness
CWE-261 · Weak Encoding for Password
Published
2026-06-09T18:04Z
EPSS history
Timeline
  • 09 JUN 18:04Z
    Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability
    cvelistv5