Show filters
209 Total Results
Displaying 11-20 of 209
Sort by:
Attacker Value
Unknown
CVE-2023-48674
Disclosure Date: March 01, 2024 (last updated February 01, 2025)
Dell Platform BIOS contains an Improper Null Termination vulnerability. A high privilege user with network access to the system could potentially send malicious data to the device in order to cause some services to cease to function.
0
Attacker Value
Unknown
CVE-2023-28063
Disclosure Date: February 06, 2024 (last updated February 15, 2024)
Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2023-43088
Disclosure Date: December 22, 2023 (last updated January 05, 2024)
Dell Client BIOS contains a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in order to execute arbitrary code on the device.
0
Attacker Value
Unknown
CVE-2023-26300
Disclosure Date: October 18, 2023 (last updated November 01, 2023)
A potential security vulnerability has been identified in the system BIOS for certain HP PC products which might allow escalation of privilege. HP is releasing firmware updates to mitigate the potential vulnerability.
0
Attacker Value
Unknown
CVE-2023-32453
Disclosure Date: August 16, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper authentication vulnerability. A malicious user with physical access to the system may potentially exploit this vulnerability in order to modify a security-critical UEFI variable without knowledge of the BIOS administrator.
0
Attacker Value
Unknown
CVE-2023-28075
Disclosure Date: August 16, 2023 (last updated October 08, 2023)
Dell BIOS contain a Time-of-check Time-of-use vulnerability in BIOS. A local authenticated malicious user with physical access to the system could potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI in order to gain arbitrary code execution on the system.
0
Attacker Value
Unknown
CVE-2023-26299
Disclosure Date: June 30, 2023 (last updated October 08, 2023)
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS), which might allow arbitrary code execution. AMI has released updates to mitigate the potential vulnerability.
0
Attacker Value
Unknown
CVE-2023-28060
Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
0
Attacker Value
Unknown
CVE-2023-28058
Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
0
Attacker Value
Unknown
CVE-2023-28050
Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
0