cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-38304,https://securityvulnerability.io/vulnerability/CVE-2024-38304,PowerEdge Platform Vulnerability Could Lead to Information Disclosure,"Dell PowerEdge Platform, 14G Intel BIOS version(s) prior to 2.22.x, contains an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.",Dell,Poweredge Platform,6.5,MEDIUM,0.0006099999882280827,false,,false,false,false,,,false,false,,2024-08-29T08:03:40.261Z,0 CVE-2024-38303,https://securityvulnerability.io/vulnerability/CVE-2024-38303,PowerEdge Platform Vulnerability: Information Disclosure at Risk,"Dell PowerEdge Platform, 14G Intel BIOS version(s) prior to 2.22.x, contains an Improper Input Validation vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.",Dell,Poweredge Platform,6,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-08-29T04:34:53.178Z,0 CVE-2024-0171,https://securityvulnerability.io/vulnerability/CVE-2024-0171,Dell PowerEdge Server BIOS Vulnerability Could Allow Local Attackers to Gain Unauthorized Access,Dell PowerEdge Server BIOS contains an TOCTOU race condition vulnerability. A local low privileged attacker could potentially exploit this vulnerability to gain access to otherwise unauthorized resources.,Dell,Poweredge Platform,5.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-06-25T15:30:42.589Z,0 CVE-2024-0172,https://securityvulnerability.io/vulnerability/CVE-2024-0172,Dell PowerEdge Server BIOS Privilege Escalation Vulnerability,"The Dell PowerEdge Server BIOS and the Dell Precision Rack BIOS are impacted by a vulnerability that arises from improper privilege management. This issue permits an unauthenticated local attacker to potentially exploit the BIOS, resulting in privilege escalation. If successfully exploited, the attacker may gain unauthorized access to system resources and potentially compromise the integrity of the system. It is crucial for users and administrators to apply the recommended security updates provided by Dell to mitigate these risks.",Dell,Poweredge Platform,7.8,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-04-03T10:15:00.000Z,0 CVE-2024-25942,https://securityvulnerability.io/vulnerability/CVE-2024-25942,Dell PowerEdge Server BIOS Vulnerability: Arbitrary Writes to SMRAM,Dell PowerEdge Server BIOS contains an Improper SMM communication buffer verification vulnerability. A physical high privileged attacker could potentially exploit this vulnerability leading to arbitrary writes to SMRAM.,Dell,Poweredge Platform,6.8,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-19T07:52:29.228Z,0 CVE-2024-22453,https://securityvulnerability.io/vulnerability/CVE-2024-22453,Dell PowerEdge Server Buffer Overflow Vulnerability,"The Dell PowerEdge Server BIOS is affected by a heap-based buffer overflow vulnerability. This issue allows an attacker with high-level privileges to exploit the vulnerability and potentially write to memory locations that are normally restricted. This type of vulnerability poses a risk as it could be used to manipulate system behavior, access sensitive information, or lead to further system exploitation. It is crucial for affected users to implement the security updates provided by Dell to mitigate this risk effectively.",Dell,Poweredge Platform,6,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-19T07:42:27.785Z,0 CVE-2024-0173,https://securityvulnerability.io/vulnerability/CVE-2024-0173,Dell PowerEdge Server BIOS Vulnerability Allows Low-Privilege Attackers to Read Non-SMM Stack Memory,Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploit this vulnerability to read the contents of non-SMM stack memory.,Dell,Poweredge Platform,3.3,LOW,0.0006099999882280827,false,,false,false,false,,,false,false,,2024-03-13T16:52:21.293Z,0 CVE-2024-0154,https://securityvulnerability.io/vulnerability/CVE-2024-0154,Dell PowerEdge Server BIOS Vulnerability Allows Low-Privilege Attackers to Read Non-SMM Stack Memory,Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploit this vulnerability to read the contents of non-SMM stack memory.,Dell,Poweredge Platform,3.3,LOW,0.0006099999882280827,false,,false,false,false,,,false,false,,2024-03-13T16:41:09.360Z,0 CVE-2024-0161,https://securityvulnerability.io/vulnerability/CVE-2024-0161,Dell PowerEdge Server BIOS Vulnerability: Local Attacker Could Write to SMRAM,Dell's PowerEdge Server BIOS and Precision Rack BIOS are susceptible to a vulnerability that arises from improper verification of the SMM communication buffer. This flaw permits a local attacker with low privileges to perform arbitrary write operations to the System Management RAM (SMRAM). Exploiting this vulnerability could lead to unauthorized modifications and potentially impact the stability and security of the system. Users of affected systems are encouraged to apply available security updates to mitigate the associated risks.,Dell,Poweredge Platform,8.4,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-13T16:04:12.678Z,0 CVE-2023-32460,https://securityvulnerability.io/vulnerability/CVE-2023-32460,Improper Privilege Management in Dell PowerEdge BIOS,"The Dell PowerEdge BIOS has been found to contain an improper privilege management vulnerability. This security flaw allows an unauthenticated local attacker to exploit the system, potentially enabling them to escalate privileges and gain unauthorized access to sensitive operations. It is crucial for users of Dell PowerEdge servers to remain vigilant and apply the necessary security updates to mitigate this exposure.",Dell,PowerEdge Platform,8.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-12-08T06:15:00.000Z,0 CVE-2023-32461,https://securityvulnerability.io/vulnerability/CVE-2023-32461,Buffer Overflow Vulnerability in Dell PowerEdge and Precision BIOS,"Dell PowerEdge and Precision BIOS are affected by a buffer overflow vulnerability, enabling a local user with high privileges to exploit the flaw. This exploitation can lead to memory corruption, allowing unauthorized elevation of privileges, thus posing significant security risks to systems utilizing these BIOS versions.",Dell,PowerEdge Platform,6.7,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2023-09-15T07:15:00.000Z,0 CVE-2023-25537,https://securityvulnerability.io/vulnerability/CVE-2023-25537,Out of Bounds Write Vulnerability in Dell PowerEdge and Precision Server BIOS,"The BIOS of Dell PowerEdge 14G servers and Dell Precision devices prior to specified versions have a vulnerability that allows local attackers with low privileges to exploit an Out of Bounds write. This could potentially lead to exposure of crucial data in System Management Mode, enabling the execution of arbitrary code or escalation of privileges. It is essential for users to update to the latest BIOS versions to mitigate these risks.",Dell,Poweredge Platform,6.1,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-05-22T11:15:00.000Z,0 CVE-2022-34423,https://securityvulnerability.io/vulnerability/CVE-2022-34423,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,Dell PowerEdge BIOS and Dell Precision BIOS have a vulnerability related to improper verification of the SMM communication buffer. This flaw can be exploited by a local attacker with elevated privileges to execute arbitrary code or potentially trigger a denial of service on affected systems. Proper handling and validation of SMM communications are essential to mitigate this risk.,Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T12:21:18.567Z,0 CVE-2022-34422,https://securityvulnerability.io/vulnerability/CVE-2022-34422,Improper Buffer Verification Vulnerability in Dell PowerEdge and Precision BIOS,"A vulnerability exists within Dell PowerEdge BIOS and Dell Precision BIOS due to improper verification of the SMM communication buffer. This flaw can be exploited by a local user with elevated privileges, potentially allowing for arbitrary code execution or leading to denial of service. Proper assessment and mitigation strategies are crucial to safeguard systems against potential exploitation.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:58:56.346Z,0 CVE-2022-34421,https://securityvulnerability.io/vulnerability/CVE-2022-34421,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge and Precision BIOS suffer from a vulnerability related to improper communication buffer verification within the System Management Mode (SMM). This flaw can be exploited by a local user with high privileges, enabling them to execute arbitrary code or trigger a denial of service. As a result, it poses significant security risks for systems relying on these BIOS versions, making it critical for users to ensure they keep their systems updated and apply relevant security patches.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:57:14.398Z,0 CVE-2022-34420,https://securityvulnerability.io/vulnerability/CVE-2022-34420,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge and Precision BIOS have a vulnerability that allows a local user with elevated privileges to exploit improper verification of the SMM communication buffer. This could lead to arbitrary code execution or potential denial of service, exposing systems to a range of threats. If uncorrected, this vulnerability poses significant risks to users, as it can compromise the integrity of critical systems.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:55:42.091Z,0 CVE-2022-34419,https://securityvulnerability.io/vulnerability/CVE-2022-34419,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,Dell PowerEdge and Precision BIOS have a vulnerability linked to improper verification of the System Management Mode (SMM) communication buffer. This security flaw could allow a local attacker with elevated privileges to exploit the vulnerability to execute arbitrary code or induce a denial of service. Users should ensure their systems are up to date to mitigate potential risks associated with this vulnerability.,Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:54:01.719Z,0 CVE-2022-34418,https://securityvulnerability.io/vulnerability/CVE-2022-34418,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge and Precision BIOS are impacted by a vulnerability related to improper verification of the SMM communication buffer. A local malicious user with elevated privileges could exploit this flaw to execute arbitrary code or trigger a denial of service, posing significant security risks for affected systems. It is essential for users to apply the necessary updates and patches to mitigate potential threats.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:52:24.907Z,0 CVE-2022-34417,https://securityvulnerability.io/vulnerability/CVE-2022-34417,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge BIOS and Dell Precision BIOS have a vulnerability in their SMM communication buffer verification. A local attacker with elevated privileges could exploit this flaw to execute arbitrary code or potentially trigger a denial of service, compromising system integrity. It's critical for users to ensure their systems are updated and patched to safeguard against this vulnerability.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:50:19.823Z,0 CVE-2022-34416,https://securityvulnerability.io/vulnerability/CVE-2022-34416,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge BIOS and Dell Precision BIOS have a vulnerability that allows a local user with elevated privileges to exploit improper verification of the SMM communication buffer. This may lead to arbitrary code execution or potentially cause a denial of service, posing significant risks to system integrity and availability.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:48:20.844Z,0 CVE-2022-34415,https://securityvulnerability.io/vulnerability/CVE-2022-34415,Improper SMM Communication Buffer Vulnerability in Dell PowerEdge and Precision BIOS,"Dell PowerEdge BIOS and Dell Precision BIOS are affected by a vulnerability that arises from improper verification of the SMM communication buffer. This flaw can be exploited by a local attacker with high privileges, potentially allowing them to execute arbitrary code or create conditions for a denial of service. It is crucial for users of affected systems to stay vigilant and apply necessary security updates to mitigate potential risks.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:44:58.828Z,0 CVE-2022-34414,https://securityvulnerability.io/vulnerability/CVE-2022-34414,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge and Precision BIOS are susceptible to an improper SMM communication buffer verification vulnerability. This issue allows a local user with sufficient privileges to exploit the vulnerability, potentially leading to arbitrary code execution or causing a denial of service. Users are encouraged to apply the latest updates and security patches to mitigate the risks associated with this vulnerability.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:37:21.334Z,0 CVE-2022-34413,https://securityvulnerability.io/vulnerability/CVE-2022-34413,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"Dell PowerEdge BIOS and Dell Precision BIOS feature a vulnerability that stems from inadequate verification of communication buffers in System Management Mode (SMM). A skilled local attacker with elevated privileges could leverage this flaw to execute arbitrary code or induce a denial of service, posing a serious risk to system integrity and availability. It is crucial for users to be aware of this vulnerability and apply any recommended patches or mitigations.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:35:09.561Z,0 CVE-2022-34412,https://securityvulnerability.io/vulnerability/CVE-2022-34412,Improper SMM Communication Buffer Verification in Dell PowerEdge and Dell Precision BIOS,"Dell PowerEdge BIOS and Dell Precision BIOS are susceptible to an improper SMM communication buffer verification vulnerability. This security issue could allow a local user with elevated privileges to exploit the flaw, potentially leading to arbitrary code execution or triggering a denial of service. Organizations utilizing these products should assess their systems and apply relevant mitigations.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:33:34.235Z,0 CVE-2022-34411,https://securityvulnerability.io/vulnerability/CVE-2022-34411,Improper SMM Communication Buffer Verification in Dell PowerEdge and Precision BIOS,"The Dell PowerEdge and Precision BIOS are affected by a vulnerability that involves improper verification of the System Management Mode (SMM) communication buffer. This security flaw allows a local user with elevated privileges to execute arbitrary code or potentially induce a denial of service condition, compromising the integrity and availability of the system.",Dell,Poweredge Platform,7.5,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-03-16T11:31:33.840Z,0