Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
None
Privileges Required
High
Attack Vector
Local
0

CVE-2023-32471

Disclosure Date: July 24, 2024
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability to read contents of stack memory and use this information for further exploits.

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

CVSS V3 Severity and Metrics
Base Score:
6.0 Medium
Impact Score:
4
Exploitability Score:
1.5
Vector:
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Attack Vector (AV):
Local
Attack Complexity (AC):
Low
Privileges Required (PR):
High
User Interaction (UI):
None
Scope (S):
Changed
Confidentiality (C):
High
Integrity (I):
None
Availability (A):
None

General Information

Vendors

  • dell

Products

  • edge gateway 3200 firmware -,
  • edge gateway 5200 firmware -,
  • g5 5587 firmware -,
  • g7 7588 firmware -,
  • inspiron 7460 firmware -,
  • optiplex 7080 firmware -,
  • precision 3930 rack firmware -,
  • precision 5520 firmware -,
  • precision 5820 tower firmware -,
  • vostro 15 7580 firmware -

Additional Info

Technical Analysis