CVE-2024-47238
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary code execution.
Affected (8)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.25.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Embedded Box Pc 3000 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 3001 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 3002 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 3003 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.29.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 5000 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.29.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 5100 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 3000 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.19.0 |
| Running on/with | Platform Versions |
|---|---|
Dell Edge Gateway 3200 | All versions |
References (1)
Source: security_alert@emc.com
Vendor Advisory
Timeline
No history available yet.