HIGH
Dell BIOS contains an improper authentication vulnerability
Published Jun 23, 2023
8.2
HIGHCVSS 3.1
EPSS 0.18%
Description
Dell BIOS contains an improper authentication vulnerability. A locally authenticated malicious user may potentially exploit this vulnerability by bypassing certain authentication mechanisms in order to elevate privileges on the system.
Affected products
-
- Version 1.13.2StatusaffectedConstraints-
- Version
Configuration 1
AND
- < 1.13.2
Running on/with
- n/a
Configuration 2
AND
- < 1.13.2
Running on/with
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-31798 Advisory
- https://www.dell.com/support/kbdoc/en-us/000213032/dsa-2023-160-dell-client vendor-advisoryVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-31798 | Advisory | |
| https://www.dell.com/support/kbdoc/en-us/000213032/dsa-2023-160-dell-client | vendor-advisoryVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner dell
Published Jun 23, 2023
Updated Dec 4, 2024
Reserved Mar 10, 2023
Link CVE-2023-28073
CISA Vulnrichment
Updated Dec 4, 2024
ENISA EUVD
EUVD-2023-31798 Assigner dell
Published Jun 23, 2023
Updated Dec 4, 2024
Exploited since n/a
Link EUVD-2023-31798