Dell Latitude 7202 Firmware vulnerabilities
3 known vulnerabilities affecting dell/latitude_7202_firmware.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2020-5348HIGHCVSS 7.8fixed in a282020-04-04
CVE-2020-5348 [HIGH] CWE-416 CVE-2020-5348: Dell Latitude 7202 Rugged Tablet BIOS versions prior to A28 contain a UAF vulnerability in EFI_BOOT_
Dell Latitude 7202 Rugged Tablet BIOS versions prior to A28 contain a UAF vulnerability in EFI_BOOT_SERVICES in system management mode. A local unauthenticated attacker may exploit this vulnerability by overwriting the EFI_BOOT_SERVICES structure to execute arbitrary code in system management mode.
nvd
CVE-2020-5326MEDIUMCVSS 5.3fixed in a242020-02-21
CVE-2020-5326 [MEDIUM] CWE-306 CVE-2020-5326: Affected Dell Client platforms contain a BIOS Setup configuration authentication bypass vulnerabilit
Affected Dell Client platforms contain a BIOS Setup configuration authentication bypass vulnerability in the pre-boot Intel Rapid Storage Response Technology (iRST) Manager menu. An attacker with physical access to the system could perform unauthorized changes to the BIOS Setup configuration settings without requiring the BIOS Admin password by select
nvd
CVE-2019-3717MEDIUMCVSS 6.8fixed in a232019-08-05
CVE-2019-3717 [MEDIUM] CVE-2019-3717: Select Dell Client Commercial and Consumer platforms contain an Improper Access Vulnerability. An un
Select Dell Client Commercial and Consumer platforms contain an Improper Access Vulnerability. An unauthenticated attacker with physical access to the system could potentially bypass intended Secure Boot restrictions to run unsigned and untrusted code on expansion cards installed in the system during platform boot. Refer to https://www.dell.com/support/articl
nvd