CVE-2023-44298
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD
Description
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability. An unauthenticated physical attacker could potentially exploit this vulnerability, leading to information tampering, code execution, denial of service.
Affected (13)
Products: Dell: Poweredge R660 Firmware, Poweredge R760 Firmware, Poweredge C6620 Firmware, Poweredge Mx760c Firmware, Poweredge R860 Firmware, Poweredge R960 Firmware, Poweredge Hs5610 Firmware, Poweredge Hs5620 Firmware, Poweredge R660xs Firmware, Poweredge R760xs Firmware, Poweredge R760xd2 Firmware, Poweredge T560 Firmware, Poweredge R760xa Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R660 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R760 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge C6620 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge Mx760c | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R860 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R960 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge Hs5610 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge Hs5620 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R660xs | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R760xs | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R760xd2 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge T560 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.4.4 |
| Running on/with | Platform Versions |
|---|---|
Dell Poweredge R760xa | All versions |
Related CWEs
References (2)
Source: security_alert@emc.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.