Show filters
187 Total Results
Displaying 31-40 of 187
Sort by:
Attacker Value
Unknown

CVE-2023-32460

Disclosure Date: December 08, 2023 (last updated December 15, 2023)
Dell PowerEdge BIOS contains an improper privilege management security vulnerability. An unauthenticated local attacker could potentially exploit this vulnerability, leading to privilege escalation.
Attacker Value
Unknown

CVE-2023-25756

Disclosure Date: November 14, 2023 (last updated December 01, 2023)
Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
Attacker Value
Unknown

CVE-2023-23583

Disclosure Date: November 14, 2023 (last updated November 29, 2023)
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.
Attacker Value
Unknown

CVE-2023-22329

Disclosure Date: November 14, 2023 (last updated November 29, 2023)
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access.
Attacker Value
Unknown

CVE-2023-32461

Disclosure Date: September 15, 2023 (last updated October 08, 2023)
Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memory and potentially escalate privileges.  
Attacker Value
Unknown

CVE-2022-44611

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via adjacent access.
Attacker Value
Unknown

CVE-2022-43505

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable denial of service via local access.
Attacker Value
Unknown

CVE-2022-40982

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Information exposure through microarchitectural state after transient execution in certain vector execution units for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Attacker Value
Unknown

CVE-2022-38083

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper initialization in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
Attacker Value
Unknown

CVE-2023-2760

Disclosure Date: July 17, 2023 (last updated October 08, 2023)
An SQL injection vulnerability exists in TapHome core HandleMessageUpdateDevicePropertiesRequest function before version 2023.2, allowing low privileged users to inject arbitrary SQL directives into an SQL query and execute arbitrary SQL commands and get full reading access. This may also lead to limited write access and temporary Denial-of-Service.