CVE-2022-32482Improper Input Validation in Dell Alienware M15 R6 Firmware

Severity
5.1MEDIUMNVD
CNA5.6
EPSS
0.1%
top 84.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 1

Description

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:LExploitability: 0.8 | Impact: 4.2

Affected Packages190 packages

CVEListV5dell/cpg_bios2.15.2
NVDdell/g3_3500_firmware< 1.20.0

🔴Vulnerability Details

2
CVEList
CVE-2022-32482: Dell BIOS contains an improper input validation vulnerability2023-02-01
GHSA
GHSA-27r5-q87w-8cff: Dell BIOS contains an improper input validation vulnerability2023-02-01
CVE-2022-32482 — Improper Input Validation in Dell | cvebase