ZeroHour

CVE-2022-24418

CVSS 3.1
6.7 medium
EPSS
<1%p14
Published
()
Modified
Description

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.

Vendors
dell
Products
dell g5 5505 firmware, inspiron 22-3275 firmware, inspiron 24-3475 firmware, inspiron 27 7775 firmware, inspiron 3180 firmware, inspiron 3185 firmware, inspiron 3195 firmware, inspiron 3505 firmware, inspiron 3515 firmware, inspiron 3585 firmware, inspiron 3595 firmware, inspiron 3785 firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.