Show filters
57 Total Results
Displaying 31-40 of 57
Sort by:
Attacker Value
Unknown

CVE-2023-28029

Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable
Attacker Value
Unknown

CVE-2023-28028

Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
Attacker Value
Unknown

CVE-2023-25937

Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
Attacker Value
Unknown

CVE-2023-25936

Disclosure Date: June 23, 2023 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
Attacker Value
Unknown

CVE-2023-28810

Disclosure Date: June 14, 2023 (last updated October 08, 2023)
Some access control/intercom products have unauthorized modification of device network configuration vulnerabilities. Attackers can modify device network configuration by sending specific data packets to the vulnerable interface within the same local network.
Attacker Value
Unknown

CVE-2023-28809

Disclosure Date: June 14, 2023 (last updated October 08, 2023)
Some access control products are vulnerable to a session hijacking attack because the product does not update the session ID after a user successfully logs in. To exploit the vulnerability, attackers have to request the session ID at the same time as a valid user logs in, and gain device operation permissions by forging the IP and session ID of an authenticated user.
Attacker Value
Unknown

CVE-2022-34398

Disclosure Date: February 01, 2023 (last updated November 08, 2023)
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.
Attacker Value
Unknown

CVE-2022-32493

Disclosure Date: September 29, 2022 (last updated October 08, 2023)
Dell BIOS contains an Stack-Based Buffer Overflow vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Attacker Value
Unknown

CVE-2022-32485

Disclosure Date: September 29, 2022 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Attacker Value
Unknown

CVE-2022-32489

Disclosure Date: September 29, 2022 (last updated October 08, 2023)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.