CVE-2024-52541
published 2025-02-19CVE-2024-52541: Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this…
PriorityP337high8.2CVSS 3.1
AVLACLPRHUINSCCHIHAH
EPSS
0.16%
5.8th percentile
Dell Client Platform BIOS contains a Weak Authentication vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
Affected
470 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | alienware_m15_r6_firmware | < 1.34.0 | 1.34.0 |
| dell | alienware_m15_r7_firmware | < 1.28.0 | 1.28.0 |
| dell | alienware_m16_r1_firmware | < 1.21.0 | 1.21.0 |
| dell | alienware_m16_r2_firmware | < 1.8.0 | 1.8.0 |
| dell | alienware_m18_r1_firmware | < 1.21.0 | 1.21.0 |
| dell | alienware_m18_r2_firmware | < 1.9.0 | 1.9.0 |
| dell | alienware_x14_r2_firmware | < 1.17.0 | 1.17.0 |
| dell | alienware_x16_r1_firmware | < 1.17.0 | 1.17.0 |
| dell | alienware_x16_r2_firmware | < 1.7.0 | 1.7.0 |
| dell | chengming_3900_firmware | < 1.26.0 | 1.26.0 |
| dell | chengming_3910_firmware | < 1.20.0 | 1.20.0 |
| dell | chengming_3911_firmware | < 1.20.0 | 1.20.0 |
| dell | chengming_3990_firmware | < 1.31.1 | 1.31.1 |
| dell | chengming_3991_firmware | < 1.31.1 | 1.31.1 |
| dell | dell_client_platform_bios | >= N/A < 1.34.0 | 1.34.0 |
| dell | dell_client_platform_bios | >= N/A < 1.28.0 | 1.28.0 |
| dell | dell_client_platform_bios | >= N/A < 1.21.0 | 1.21.0 |
| dell | dell_client_platform_bios | >= N/A < 1.8.0 | 1.8.0 |
| dell | dell_client_platform_bios | >= N/A < 1.9.0 | 1.9.0 |
| dell | dell_client_platform_bios | >= N/A < 1.17.0 | 1.17.0 |
| dell | dell_client_platform_bios | >= N/A < 1.7.0 | 1.7.0 |
| dell | dell_client_platform_bios | >= N/A < 1.26.0 | 1.26.0 |
| dell | dell_client_platform_bios | >= N/A < 1.20.0 | 1.20.0 |
| dell | dell_client_platform_bios | >= N/A < 1.31.1 | 1.31.1 |
| dell | dell_client_platform_bios | >= N/A < 1.30.0 | 1.30.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-02-19
Published