CVE-2025-36579: Dell Alienware 16 Area-51 AA16250

Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Dell Client Platform BIOS contains a Weak Password Recovery Mechanism vulnerability. An unauthenticated attacker with physical access to the system could potentially exploit this vulnerability, leading to unauthorized access.

Affected products

  • Dell Alienware 16 Area-51 AA16250: before 1.9.0 (fixed in 1.9.0)
  • Dell Alienware 16x Aurora AC16251: before 1.8.1 (fixed in 1.8.1)
  • Dell Alienware 18 Area-51 AA18250: before 1.9.0 (fixed in 1.9.0)
  • Dell Alienware Area-51 AAT225: before 1.11.0 (fixed in 1.11.0)
  • Dell Alienware Aurora ACT1250: before 1.10.0 (fixed in 1.10.0)
  • Dell Alienware m15 r6: before 1.42.0 (fixed in 1.42.0)
  • Dell Alienware m15 r7: before 1.37.0 (fixed in 1.37.0)
  • Dell Alienware m16 r1: before 1.32.0 (fixed in 1.32.0)
  • Dell Alienware m16 r2: before 1.18.0 (fixed in 1.18.0)
  • Dell Alienware m18 r1: before 1.32.0 (fixed in 1.32.0)
  • Dell Alienware m18 r2: before 1.20.0 (fixed in 1.20.0)
  • Dell Alienware x14 r2: before 1.30.1 (fixed in 1.30.1)
  • Dell Alienware x16 r1: before 1.30.1 (fixed in 1.30.1)
  • Dell Alienware x16 r2: before 1.18.1 (fixed in 1.18.1)
  • Dell Chengming 3900: before 1.37.0 (fixed in 1.37.0)
  • Dell Chengming 3910/3911: before 1.32.0 (fixed in 1.32.0)
  • Dell Chengming 3990: before 1.35.1 (fixed in 1.35.1)
  • Dell Chengming 3991: before 1.35.1 (fixed in 1.35.1)
  • Dell Dell 14 DC14250: before 1.4.0 (fixed in 1.4.0)
  • Dell Dell 14 Premium DA14250: before 1.5.1 (fixed in 1.5.1)
  • Dell Dell 15 DC15250: before 1.6.0 (fixed in 1.6.0)
  • Dell Dell 16 DC16250: before 1.7.0 (fixed in 1.7.0)
  • Dell Dell 16 DC16251: before 1.7.0 (fixed in 1.7.0)
  • Dell Dell 16 Premium DA16250: before 1.7.0 (fixed in 1.7.0)
  • Dell Dell g15 5510: before 1.38.0 (fixed in 1.38.0)
  • and 95 more

Published 2026-04-16. Last modified 2026-06-17.