Show filters
93 Total Results
Displaying 51-60 of 93
Sort by:
Attacker Value
Unknown

CVE-2023-28029

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable
Attacker Value
Unknown

CVE-2023-28028

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
Attacker Value
Unknown

CVE-2023-25937

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
Attacker Value
Unknown

CVE-2023-25936

Disclosure Date: June 23, 2023 (last updated February 25, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
Attacker Value
Unknown

CVE-2022-24410

Disclosure Date: February 10, 2023 (last updated February 24, 2025)
Dell BIOS contains an information exposure vulnerability. An unauthenticated local attacker with physical access to the system and knowledge of the system configuration could potentially exploit this vulnerability to read system information via debug interfaces.
Attacker Value
Unknown

CVE-2022-34398

Disclosure Date: February 01, 2023 (last updated February 24, 2025)
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system.
Attacker Value
Unknown

CVE-2022-20968

Disclosure Date: December 12, 2022 (last updated February 24, 2025)
A vulnerability in the Cisco Discovery Protocol processing feature of Cisco IP Phone 7800 and 8800 Series firmware could allow an unauthenticated, adjacent attacker to cause a stack overflow on an affected device. This vulnerability is due to insufficient input validation of received Cisco Discovery Protocol packets. An attacker could exploit this vulnerability by sending crafted Cisco Discovery Protocol traffic to an affected device. A successful exploit could allow the attacker to cause a stack overflow, resulting in possible remote code execution or a denial of service (DoS) condition on an affected device.
Attacker Value
Unknown

CVE-2022-34391

Disclosure Date: September 30, 2022 (last updated February 24, 2025)
Dell Client BIOS Versions prior to the remediated version contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Attacker Value
Unknown

CVE-2022-34390

Disclosure Date: September 30, 2022 (last updated February 24, 2025)
Dell BIOS contains a use of uninitialized variable vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.
Attacker Value
Unknown

CVE-2022-32493

Disclosure Date: September 29, 2022 (last updated February 24, 2025)
Dell BIOS contains an Stack-Based Buffer Overflow vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.