Show filters
164 Total Results
Displaying 1-10 of 164
Sort by:
Attacker Value
Unknown
CVE-2024-52541
Disclosure Date: February 19, 2025 (last updated February 20, 2025)
Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
0
Attacker Value
Unknown
CVE-2024-42492
Disclosure Date: February 12, 2025 (last updated February 13, 2025)
Uncontrolled search path element in some BIOS and System Firmware Update Package for Intel(R) Server M50FCP family before version R01.02.0002 may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-40885
Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-36282
Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Improper input validation in the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-34167
Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Uncontrolled search path for the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-7756
Disclosure Date: September 13, 2024 (last updated January 05, 2025)
A potential vulnerability was reported in the ThinkPad L390 Yoga and 10w Notebook that could allow a local attacker to escalate privileges by accessing an embedded UEFI shell.
0
Attacker Value
Unknown
CVE-2024-4550
Disclosure Date: September 13, 2024 (last updated January 05, 2025)
A potential buffer overflow vulnerability was reported in some Lenovo ThinkSystem and ThinkStation products that could allow a local attacker with elevated privileges to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2024-45105
Disclosure Date: September 13, 2024 (last updated January 05, 2025)
An internal product security audit discovered a UEFI SMM (System Management Mode) callout vulnerability in some ThinkSystem servers that could allow a local attacker with elevated privileges to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2024-3100
Disclosure Date: September 13, 2024 (last updated September 14, 2024)
A potential buffer overflow vulnerability was reported in some Lenovo Notebook products that could allow a local attacker with elevated privileges to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2022-27540
Disclosure Date: June 28, 2024 (last updated June 29, 2024)
A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.
0