CVE-2024-47238
published 2024-12-12CVE-2024-47238: Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local…
PriorityP430medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.22%
13.2th percentile
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary code execution.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | dell_client_platform_bios | >= N/A < 1.29.0 | 1.29.0 |
| dell | dell_client_platform_bios | >= N/A < 1.19.0 | 1.19.0 |
| dell | dell_client_platform_bios | >= N/A < 1.25.0 | 1.25.0 |
| dell | edge_gateway_3000_firmware | < 1.19.0 | 1.19.0 |
| dell | edge_gateway_3001_firmware | < 1.19.0 | 1.19.0 |
| dell | edge_gateway_3002_firmware | < 1.19.0 | 1.19.0 |
| dell | edge_gateway_3003_firmware | < 1.19.0 | 1.19.0 |
| dell | edge_gateway_3200_firmware | < 1.19.0 | 1.19.0 |
| dell | edge_gateway_5000_firmware | < 1.29.0 | 1.29.0 |
| dell | edge_gateway_5100_firmware | < 1.29.0 | 1.29.0 |
| dell | embedded_box_pc_3000_firmware | < 1.25.0 | 1.25.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-12-12
Published