Show filters
235 Total Results
Displaying 71-80 of 235
Sort by:
Attacker Value
Unknown
CVE-2022-26861
Disclosure Date: August 04, 2022 (last updated October 08, 2023)
Dell BIOS versions contain an Insecure Automated Optimization vulnerability. A local authenticated malicious user could exploit this vulnerability by sending malicious input via SMI to obtain arbitrary code execution during SMM.
0
Attacker Value
Unknown
CVE-2022-26860
Disclosure Date: August 04, 2022 (last updated October 08, 2023)
Dell BIOS versions contain a stack-based buffer overflow vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI to bypass security checks resulting in arbitrary code execution in SMM.
0
Attacker Value
Unknown
CVE-2022-26859
Disclosure Date: August 04, 2022 (last updated October 08, 2023)
Dell BIOS contains a race condition vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI in order to bypass security checks during SMM.
0
Attacker Value
Unknown
CVE-2022-26858
Disclosure Date: August 04, 2022 (last updated October 08, 2023)
Dell BIOS versions contain an Improper Authentication vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls.
0
Attacker Value
Unknown
CVE-2022-22326
Disclosure Date: July 29, 2022 (last updated October 08, 2023)
IBM Datapower Gateway 10.0.2.0 through 10.0.4.0, 10.0.1.0 through 10.0.1.5, and 2018.4.1.0 through 2018.4.1.18 could allow unauthorized viewing of logs and files due to insufficient authorization checks. IBM X-Force ID: 218856.
0
Attacker Value
Unknown
CVE-2022-30276
Disclosure Date: July 26, 2022 (last updated October 07, 2023)
The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway modules which allow for interfacing between Motorola Data Link Communication (MDLC) networks (potentially over a variety of serial, RF and/or Ethernet links) and TCP/IP networks. Communication with RTUs behind the gateway is done by means of the proprietary IPGW protocol (5001/TCP). This protocol does not have any authentication features, allowing any attacker capable of communicating with the port in question to invoke (a subset of) desired functionality.
0
Attacker Value
Unknown
CVE-2022-27509
Disclosure Date: July 26, 2022 (last updated October 08, 2023)
Unauthenticated redirection to a malicious website
0
Attacker Value
Unknown
CVE-2022-24421
Disclosure Date: March 10, 2022 (last updated February 23, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
0
Attacker Value
Unknown
CVE-2022-24416
Disclosure Date: March 10, 2022 (last updated February 23, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
0
Attacker Value
Unknown
CVE-2022-24420
Disclosure Date: March 10, 2022 (last updated February 23, 2025)
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
0