Dell Inspiron 7620 Firmware vulnerabilities

9 known vulnerabilities affecting dell/inspiron_7620_firmware.

Total CVEs
9
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM5LOW3

Vulnerabilities

Page 1 of 1
CVE-2022-46752MEDIUMCVSS 4.6fixed in 1.8.02023-03-08
CVE-2022-46752 [MEDIUM] CWE-285 CVE-2022-46752: Dell BIOS contains an Improper Authorization vulnerability. An unauthenticated physical attacker ma Dell BIOS contains an Improper Authorization vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability, leading to denial of service.
nvd
CVE-2022-32482MEDIUMCVSS 5.1fixed in 1.4.02023-02-01
CVE-2022-32482 [MEDIUM] CWE-20 CVE-2022-32482: Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable.
nvd
CVE-2022-31226HIGHCVSS 7.8fixed in 1.3.02022-09-12
CVE-2022-31226 [HIGH] CWE-121 CVE-2022-31226: Dell BIOS versions contain a Stack-based Buffer Overflow vulnerability. A local authenticated malici Dell BIOS versions contain a Stack-based Buffer Overflow vulnerability. A local authenticated malicious user could potentially exploit this vulnerability by sending excess data to a function in order to gain arbitrary code execution on the system.
nvd
CVE-2022-31225MEDIUMCVSS 5.1fixed in 1.3.02022-09-12
CVE-2022-31225 [MEDIUM] CWE-252 CVE-2022-31225: Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administra Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order to change the state of the system or cause unexpected failures.
nvd
CVE-2022-31222MEDIUMCVSS 4.4fixed in 1.3.02022-09-12
CVE-2022-31222 [MEDIUM] CWE-401 CVE-2022-31222: Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A l Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by consuming excess memory in order to cause the application to crash.
nvd
CVE-2022-31220MEDIUMCVSS 5.1fixed in 1.3.02022-09-12
CVE-2022-31220 [MEDIUM] CWE-1038 CVE-2022-31220: Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administra Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order to change the state of the system or cause unexpected failures.
nvd
CVE-2022-31224LOWCVSS 2.4fixed in 1.3.02022-09-12
CVE-2022-31224 [LOW] CWE-1247 CVE-2022-31224: Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. An attacker with physical access to the system could potentially exploit this vulnerability by triggering a fault condition in order to change the behavior of the system.
nvd
CVE-2022-31223LOWCVSS 2.3fixed in 1.3.02022-09-12
CVE-2022-31223 [LOW] CWE-158 CVE-2022-31223: Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authentica Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by sending unexpected null bytes in order to read memory on the system.
nvd
CVE-2022-31221LOWCVSS 2.3fixed in 1.3.02022-09-12
CVE-2022-31221 [LOW] CWE-200 CVE-2022-31221: Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrato Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order access sensitive state information on the system.
nvd