cbcvebase.

Dell Cpg Bios vulnerabilities

110 known vulnerabilities affecting dell/cpg_bios.

Total CVEs
110
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH35MEDIUM70LOW5

Vulnerabilities

Page 6 of 6
CVE-2023-28064P4MEDIUMCVSS 4.6vAll Versions2023-06-23
CVE-2023-28064 [MEDIUM] CWE-787 CVE-2023-28064: Dell BIOS contains an Out-of-bounds Write vulnerability. An unauthenticated physical attacker may p Dell BIOS contains an Out-of-bounds Write vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability, leading to denial of service.
nvd
CVE-2024-22448P4MEDIUMCVSS 4.4≥ N/A, < 1.29.0≥ N/A, < 1.16.0+20 more2024-04-10
CVE-2024-22448 [MEDIUM] CWE-787 CVE-2024-22448: Dell BIOS contains an Out-of-Bounds Write vulnerability. A local authenticated malicious user with a Dell BIOS contains an Out-of-Bounds Write vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.
nvd
CVE-2020-5387P4MEDIUMCVSS 4.4≥ unspecified, < 1.13.12020-10-01
CVE-2020-5387 [MEDIUM] CWE-755 CVE-2020-5387: Dell XPS 13 9370 BIOS versions prior to 1.13.1 contains an Improper Exception Handling vulnerability Dell XPS 13 9370 BIOS versions prior to 1.13.1 contains an Improper Exception Handling vulnerability. A local attacker with physical access could exploit this vulnerability to prevent the system from booting until the exploited boot device is removed.
nvd
CVE-2022-31222P4MEDIUMCVSS 4.4≥ unspecified, < 21Q4 platforms2022-09-12
CVE-2022-31222 [MEDIUM] CWE-401 CVE-2022-31222: Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A l Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by consuming excess memory in order to cause the application to crash.
nvd
CVE-2023-28063P4MEDIUMCVSS 4.4v1.24.0v1.17.0+46 more2024-02-06
CVE-2023-28063 [MEDIUM] CWE-195 CVE-2023-28063: Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability. A local authenticated malic Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.
nvd
CVE-2023-32453P4LOWCVSS 3.9vAll versions2023-08-16
CVE-2023-32453 [LOW] CWE-287 CVE-2023-32453: Dell BIOS contains an improper authentication vulnerability. A malicious user with physical access Dell BIOS contains an improper authentication vulnerability. A malicious user with physical access to the system may potentially exploit this vulnerability in order to modify a security-critical UEFI variable without knowledge of the BIOS administrator.
nvd
CVE-2022-34399P4LOWCVSS 2.3fixed in 1.2.22023-01-18
CVE-2022-34399 [LOW] CWE-805 CVE-2022-34399: Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A maliciou Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin privileges could potentially exploit this vulnerability by sending input larger than expected in order to leak certain sections of SMRAM.
nvd
CVE-2022-31224P4LOWCVSS 2.4≥ unspecified, < 21Q4 platforms2022-09-12
CVE-2022-31224 [LOW] CWE-1247 CVE-2022-31224: Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. An attacker with physical access to the system could potentially exploit this vulnerability by triggering a fault condition in order to change the behavior of the system.
nvd
CVE-2022-31223P4LOWCVSS 2.3≥ unspecified, < 21Q4 platforms2022-09-12
CVE-2022-31223 [LOW] CWE-158 CVE-2022-31223: Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authentica Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by sending unexpected null bytes in order to read memory on the system.
nvd
CVE-2022-31221P4LOWCVSS 2.3≥ unspecified, < 21Q4 platforms2022-09-12
CVE-2022-31221 [LOW] CWE-200 CVE-2022-31221: Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrato Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order access sensitive state information on the system.
nvd
Dell Cpg Bios vulnerabilities | cvebase