logo

Dell BIOS Flaw Lets Attackers Extract Plaintext Passwords Without Brute Force

ID: 6d92efd2-fd53-55e8-afea-c9cb6c7ad09f

STIX ID: report--6d92efd2-fd53-55e8-afea-c9cb6c7ad09f

Feed Name: GBHackers

Threat Score
60/100

Date Published: 2026-07-11

Date Updated: 2026-07-21

Author: Eswar

...
...

A Dell BIOS password-storage flaw (CVE-2026-40639) in the DVAR configuration store and SystemPwSmm driver stores passwords using a weak repeating-key XOR scheme that leaks key bytes via null-byte padding, enabling attackers with physical access or SPI flash dumps to recover BIOS passwords quickly. MDSec validated the issue on several Latitude, XPS and Wyse systems; Dell has issued updates for affected models. Attackers could recover passwords, change boot settings, disable Secure Boot, or boot external media; mitigations include applying firmware updates, avoiding password reuse, and enforcing layered physical and firmware protections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.