ZeroHour

CVE-2022-34393

CVSS 3.1
7.5 high
EPSS
<1%p11
Published
()
Modified
Description

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

Vendors
dell
Products
g5 se 5505 firmware, inspiron 27 7775 firmware, inspiron 3180 firmware, inspiron 3185 firmware, inspiron 3195 2-in-1 firmware, inspiron 3275 firmware, inspiron 3475 firmware, inspiron 3505 firmware, inspiron 3515 firmware, inspiron 3585 firmware, inspiron 3595 firmware, inspiron 3785 firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.