cbcvebase.
CVE-2024-52537
published 2024-12-11

CVE-2024-52537: Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attacker with local access could potentially…

PriorityP428medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.18%
7.2th percentile
Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

Affected

8 ranges
VendorProductVersion rangeFixed in
delldell_client_platform_bios>= N/A < 1.00.44, 1.00.281.00.44, 1.00.28
delldell_client_platform_bios>= N/A < 1.00.23,1.00.281.00.23,1.00.28
delldock_hd22q_firmware_update_utility< 1.00.231.00.23
delldock_hd22q_firmware_update_utility< 1.00.281.00.28
delldock_wd19_firmware_update_utility< 01.00.4401.00.44
delldock_wd19_firmware_update_utility< 01.00.2801.00.28
delldock_wd22tb4_firmware_update_utility< 01.00.2801.00.28
delldock_wd22tb4_firmware_update_utility< 01.00.4401.00.44
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.