Show filters
214 Total Results
Displaying 111-120 of 214
Sort by:
Attacker Value
Unknown
CVE-2022-24410
Disclosure Date: February 10, 2023 (last updated November 08, 2023)
Dell BIOS contains an information exposure vulnerability. An unauthenticated local attacker with physical access to the system and knowledge of the system configuration could potentially exploit this vulnerability to read system information via debug interfaces.
0
Attacker Value
Unknown
CVE-2022-34403
Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using an SMI to send larger than expected input to a parameter to gain arbitrary code execution in SMRAM.
0
Attacker Value
Unknown
CVE-2022-34398
Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.
0
Attacker Value
Unknown
CVE-2022-32482
Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
0
Attacker Value
Unknown
CVE-2022-34400
Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell BIOS contains a heap buffer overflow vulnerability. A local attacker with admin privileges could potentially exploit this vulnerability to perform an arbitrary write to SMRAM during SMM.
0
Attacker Value
Unknown
CVE-2022-34399
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin privileges could potentially exploit this vulnerability by sending input larger than expected in order to leak certain sections of SMRAM.
0
Attacker Value
Unknown
CVE-2022-34460
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
Prior Dell BIOS versions contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
0
Attacker Value
Unknown
CVE-2022-34393
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
0
Attacker Value
Unknown
CVE-2021-26346
Disclosure Date: January 11, 2023 (last updated February 24, 2025)
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential denial of service.
0
Attacker Value
Unknown
CVE-2022-41830
Disclosure Date: December 05, 2022 (last updated February 24, 2025)
Stored cross-site scripting vulnerability in Kyocera Document Solutions MFPs and printers allows a remote authenticated attacker with an administrative privilege to inject arbitrary script. Affected products/versions are as follows: TASKalfa 7550ci/6550ci, TASKalfa 5550ci/4550ci/3550ci/3050ci, TASKalfa 255c/205c, TASKalfa 256ci/206ci, ECOSYS M6526cdn/M6526cidn, FS-C2126MFP/C2126MFP+/C2026MFP/C2026MFP+, TASKalfa 8000i/6500i, TASKalfa 5500i/4500i/3500i, TASKalfa 305/255, TASKalfa 306i/256i, LS-3140MFP/3140MFP+/3640MFP, ECOSYS M2535dn, LS-1135MFP/1035MFP, LS-C8650DN/C8600DN, ECOSYS P6026cdn, FS-C5250DN, LS-4300DN/4200DN/2100DN, ECOSYS P4040dn, ECOSYS P2135dn, and FS-1370DN.
0