7 results (0.005 seconds)

CVSS: 3.1EPSS: 0%CPEs: 3EXPL: 0

10 Apr 2025 — Dell Client Platform BIOS contains a Security Version Number Mutable to Older Versions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to BIOS upgrade denial. • https://www.dell.com/support/kbdoc/en-us/000250131/dsa-2025-016 • CWE-1328: Security Version Number Mutable to Older Versions •

CVSS: 6.9EPSS: 0%CPEs: 4EXPL: 0

09 Apr 2025 — Dell Client Platform BIOS contains a Stack-based Buffer Overflow Vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary code execution. • https://www.dell.com/support/kbdoc/en-in/000283859/dsa-2025-088 • CWE-121: Stack-based Buffer Overflow •

CVSS: 8.2EPSS: 0%CPEs: 78EXPL: 0

19 Feb 2025 — Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. • https://www.dell.com/support/kbdoc/en-us/000258429/dsa-2025-021 • CWE-1390: Weak Authentication •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

12 Dec 2024 — Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary code execution. • https://www.dell.com/support/kbdoc/en-us/000227595/dsa-2024-355 • CWE-20: Improper Input Validation •

CVSS: 6.3EPSS: 0%CPEs: 3EXPL: 0

11 Dec 2024 — Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. • https://www.dell.com/support/kbdoc/en-us/000227591/dsa-2024-351 • CWE-61: UNIX Symbolic Link (Symlink) Following •

CVSS: 8.2EPSS: 0%CPEs: 4EXPL: 0

28 Aug 2024 — Dell Client Platform BIOS contains a Use of Default Cryptographic Key Vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Secure Boot bypass and arbitrary code execution. • https://www.dell.com/support/kbdoc/en-us/000227594/dsa-2024-354 • CWE-1392: Use of Default Credentials •

CVSS: 6.7EPSS: 0%CPEs: 3EXPL: 0

14 Aug 2024 — Dell BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution. • https://www.dell.com/support/kbdoc/en-us/000225776/dsa-2024-260 • CWE-20: Improper Input Validation •