Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memory and potentially escalate privileges.
Metrics
No CVSS v4.0
Attack Vector Local
Attack Complexity High
Privileges Required High
Scope Changed
Confidentiality Impact Low
Integrity Impact Low
Availability Impact Low
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
The EPSS score is 0.00065.
Exploitation none
Automatable no
Technical Impact partial
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Dell
Subscribe
|
Emc Xc Core Xc450
Subscribe
Emc Xc Core Xc450 Firmware
Subscribe
Emc Xc Core Xc650
Subscribe
Emc Xc Core Xc650 Firmware
Subscribe
Emc Xc Core Xc6520
Subscribe
Emc Xc Core Xc6520 Firmware
Subscribe
Emc Xc Core Xc750
Subscribe
Emc Xc Core Xc750 Firmware
Subscribe
Emc Xc Core Xc750xa
Subscribe
Emc Xc Core Xc750xa Firmware
Subscribe
Emc Xc Core Xc7525
Subscribe
Emc Xc Core Xc7525 Firmware
Subscribe
Poweredge C6520
Subscribe
Poweredge C6520 Firmware
Subscribe
Poweredge C6525
Subscribe
Poweredge C6525 Firmware
Subscribe
Poweredge C6620
Subscribe
Poweredge C6620 Firmware
Subscribe
Poweredge Hs5610
Subscribe
Poweredge Hs5610 Firmware
Subscribe
Poweredge Hs5620
Subscribe
Poweredge Hs5620 Firmware
Subscribe
Poweredge Mx750c
Subscribe
Poweredge Mx750c Firmware
Subscribe
Poweredge Mx760c
Subscribe
Poweredge Mx760c Firmware
Subscribe
Poweredge R250
Subscribe
Poweredge R250 Firmware
Subscribe
Poweredge R350
Subscribe
Poweredge R350 Firmware
Subscribe
Poweredge R450
Subscribe
Poweredge R450 Firmware
Subscribe
Poweredge R550
Subscribe
Poweredge R550 Firmware
Subscribe
Poweredge R650
Subscribe
Poweredge R650 Firmware
Subscribe
Poweredge R650xs
Subscribe
Poweredge R650xs Firmware
Subscribe
Poweredge R6515
Subscribe
Poweredge R6515 Firmware
Subscribe
Poweredge R6525
Subscribe
Poweredge R6525 Firmware
Subscribe
Poweredge R660
Subscribe
Poweredge R660 Firmware
Subscribe
Poweredge R660xs
Subscribe
Poweredge R660xs Firmware
Subscribe
Poweredge R6615
Subscribe
Poweredge R6615 Firmware
Subscribe
Poweredge R6625
Subscribe
Poweredge R6625 Firmware
Subscribe
Poweredge R750
Subscribe
Poweredge R750 Firmware
Subscribe
Poweredge R750xa
Subscribe
Poweredge R750xa Firmware
Subscribe
Poweredge R750xs
Subscribe
Poweredge R750xs Firmware
Subscribe
Poweredge R7515
Subscribe
Poweredge R7515 Firmware
Subscribe
Poweredge R7525
Subscribe
Poweredge R7525 Firmware
Subscribe
Poweredge R760
Subscribe
Poweredge R760 Firmware
Subscribe
Poweredge R760xa
Subscribe
Poweredge R760xa Firmware
Subscribe
Poweredge R760xd2
Subscribe
Poweredge R760xd2 Firmware
Subscribe
Poweredge R760xs
Subscribe
Poweredge R760xs Firmware
Subscribe
Poweredge R7615
Subscribe
Poweredge R7615 Firmware
Subscribe
Poweredge R7625
Subscribe
Poweredge R7625 Firmware
Subscribe
Poweredge R860
Subscribe
Poweredge R860 Firmware
Subscribe
Poweredge R960
Subscribe
Poweredge R960 Firmware
Subscribe
Poweredge T150
Subscribe
Poweredge T150 Firmware
Subscribe
Poweredge T350
Subscribe
Poweredge T350 Firmware
Subscribe
Poweredge T550
Subscribe
Poweredge T550 Firmware
Subscribe
Poweredge T560
Subscribe
Poweredge T560 Firmware
Subscribe
Poweredge Xe8545
Subscribe
Poweredge Xe8545 Firmware
Subscribe
Poweredge Xe8640
Subscribe
Poweredge Xe8640 Firmware
Subscribe
Poweredge Xe9680
Subscribe
Poweredge Xe9680 Firmware
Subscribe
Poweredge Xr11
Subscribe
Poweredge Xr11 Firmware
Subscribe
Poweredge Xr12
Subscribe
Poweredge Xr12 Firmware
Subscribe
Poweredge Xr4510c
Subscribe
Poweredge Xr4510c Firmware
Subscribe
Poweredge Xr4520c
Subscribe
Poweredge Xr4520c Firmware
Subscribe
Poweredge Xr5610
Subscribe
Poweredge Xr5610 Firmware
Subscribe
Poweredge Xr7620
Subscribe
Poweredge Xr7620 Firmware
Subscribe
Poweredge Xr8620t
Subscribe
Poweredge Xr8620t Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
Configuration 27 [-]
| AND |
|
Configuration 28 [-]
| AND |
|
Configuration 29 [-]
| AND |
|
Configuration 30 [-]
| AND |
|
Configuration 31 [-]
| AND |
|
Configuration 32 [-]
| AND |
|
Configuration 33 [-]
| AND |
|
Configuration 34 [-]
| AND |
|
Configuration 35 [-]
| AND |
|
Configuration 36 [-]
| AND |
|
Configuration 37 [-]
| AND |
|
Configuration 38 [-]
| AND |
|
Configuration 39 [-]
| AND |
|
Configuration 40 [-]
| AND |
|
Configuration 41 [-]
| AND |
|
Configuration 42 [-]
| AND |
|
Configuration 43 [-]
| AND |
|
Configuration 44 [-]
| AND |
|
Configuration 45 [-]
| AND |
|
Configuration 46 [-]
| AND |
|
Configuration 47 [-]
| AND |
|
Configuration 48 [-]
| AND |
|
Configuration 49 [-]
| AND |
|
Configuration 50 [-]
| AND |
|
Configuration 51 [-]
| AND |
|
Configuration 52 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-36705 | Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memory and potentially escalate privileges. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 25 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-25T14:12:53.858Z
Reserved: 2023-05-09T06:05:24.994Z
Link: CVE-2023-32461
Updated: 2024-08-02T15:18:37.226Z
Status : Modified
Published: 2023-09-15T07:15:09.550
Modified: 2024-11-21T08:03:23.967
Link: CVE-2023-32461
No data.
OpenCVE Enrichment
No data.
EUVD