Severity
7.5HIGH
EPSS
0.0%
top 86.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 24
Latest updateMay 24

Description

Dell BIOSConnect feature contains a buffer overflow vulnerability. An authenticated malicious admin user with local access to the system may potentially exploit this vulnerability to run arbitrary code and bypass UEFI restrictions.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:HExploitability: 0.6 | Impact: 6.0

Affected Packages129 packages

CVEListV5dell/biosconnectunspecifiedGen 11, Gen 10

🔴Vulnerability Details

2
GHSA
GHSA-m63g-xhf4-q4g5: Dell BIOSConnect feature contains a buffer overflow vulnerability2022-05-24
CVEList
CVE-2021-21573: Dell BIOSConnect feature contains a buffer overflow vulnerability2021-06-24