Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfpg-4h2f-6hgr

Опубликовано: 13 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to out-of-bound read/writes to SMRAM.

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to out-of-bound read/writes to SMRAM.

EPSS

Процентиль: 26%
0.00091
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to out-of-bound read/writes to SMRAM.

CVSS3: 5.3
fstec
почти 2 года назад

Уязвимость микропрограммного обеспечения BIOS серверов Dell PowerEdge и рабочих станций Dell Precision Rack, позволяющая нарушителю записать произвольные данные в область SMRAM (System Management RAM)

EPSS

Процентиль: 26%
0.00091
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-119
CWE-787