4.6
CVE-2023-32453
- EPSS 0.03%
- Published 16.08.2023 20:15:09
- Last modified 21.11.2024 08:03:22
- Source security_alert@emc.com
- Teams watchlist Login
- Open Login
Dell BIOS contains an improper authentication vulnerability. A malicious user with physical access to the system may potentially exploit this vulnerability in order to modify a security-critical UEFI variable without knowledge of the BIOS administrator.
Data is provided by the National Vulnerability Database (NVD)
Dell ≫ Alienware M15 R7 Firmware Version < 1.18.0
Dell ≫ Alienware M16 Firmware Version < 1.10.1
Dell ≫ Alienware M18 Firmware Version < 1.10.1
Dell ≫ Chengming 3900 Firmware Version < 1.15.0
Dell ≫ Chengming 3901 Firmware Version < 1.15.0
Dell ≫ Chengming 3910 Firmware Version < 1.6.0
Dell ≫ Chengming 3911 Firmware Version < 1.6.0
Dell ≫ G15 5520 Firmware Version < 1.18.0
Dell ≫ G16 7620 Firmware Version < 1.18.0
Dell ≫ G3 3500 Firmware Version < 1.26.0
Dell ≫ G5 15 5500 Firmware Version < 1.26.0
Dell ≫ G7 15 7500 Firmware Version < 1.26.0
Dell ≫ G7 17 7700 Firmware Version < 1.26.0
Dell ≫ Precision 5680 Firmware Version < 1.4.1
Dell ≫ Inspiron 14 5410 Firmware Version < 2.20.0
Dell ≫ Inspiron 14 5418 Firmware Version < 2.20.0
Dell ≫ Inspiron 15 3511 Firmware Version < 1.23.0
Dell ≫ Inspiron 15 5510 Firmware Version < 2.20.0
Dell ≫ Inspiron 15 5518 Firmware Version < 2.20.0
Dell ≫ Inspiron 24 5420 All-in-one Firmware Version < 1.4.0
Dell ≫ Inspiron 24 5421 All-in-one Firmware Version < 1.4.0
Dell ≫ Inspiron 27 7720 All-in-one Firmware Version < 1.4.0
Dell ≫ Inspiron 3020 Small Desktop Firmware Version <= 1.6.0
Dell ≫ Inspiron 3020 Desktop Firmware Version < 1.6.0
Dell ≫ Inspiron 3493 Firmware Version < 1.27.0
Dell ≫ Inspiron 3511 Firmware Version < 1.23.0
Dell ≫ Inspiron 3593 Firmware Version < 1.27.0
Dell ≫ Inspiron 3793 Firmware Version < 1.27.0
Dell ≫ Inspiron 3891 Firmware Version < 1.19.0
Dell ≫ Inspiron 3910 Firmware Version < 1.15.0
Dell ≫ Inspiron 5410 Firmware Version < 2.20.0
Dell ≫ Inspiron 5493 Firmware Version < 1.27.0
Dell ≫ Inspiron 5593 Firmware Version < 1.27.0
Dell ≫ Inspiron 7300 2-in-1 Firmware Version < 1.19.0
Dell ≫ Inspiron 7490 Firmware Version < 1.22.0
Dell ≫ Inspiron 7500 Firmware Version < 1.24.0
Dell ≫ Inspiron 7500 2-in-1 Black Firmware Version < 1.19.0
Dell ≫ Inspiron 7501 Firmware Version < 1.24.0
Dell ≫ Inspiron 7510 Firmware Version < 1.17.0
Dell ≫ Inspiron 7610 Firmware Version < 1.17.0
Dell ≫ Latitude 3140 Firmware Version < 1.8.0
Dell ≫ Latitude 3301 Firmware Version < 1.27.0
Dell ≫ Latitude 3320 Firmware Version < 1.23.0
Dell ≫ Latitude 3330 Firmware Version < 1.15.0
Dell ≫ Latitude 3340 Firmware Version < 1.6.0
Dell ≫ Latitude 3400 Firmware Version < 1.29.0
Dell ≫ Latitude 3430 Firmware Version < 1.12.0
Dell ≫ Latitude 3440 Firmware Version < 1.6.0
Dell ≫ Latitude 3500 Firmware Version < 1.29.0
Dell ≫ Latitude 3530 Firmware Version < 1.12.0
Dell ≫ Latitude 3540 Firmware Version < 1.6.0
Dell ≫ Latitude 5420 Firmware Version < 1.30.0
Dell ≫ Latitude 5430 Firmware Version < 1.15.0
Dell ≫ Latitude 5431 Firmware Version < 1.15.0
Dell ≫ Latitude 7230 Rugged Extreme Tablet Firmware Version < 1.8.0
Dell ≫ Latitude 7320 Firmware Version < 1.28.0
Dell ≫ Latitude 7420 Firmware Version < 1.28.0
Dell ≫ Latitude 7520 Firmware Version < 1.28.0
Dell ≫ Latitude 9330 Firmware Version < 1.13.0
Dell ≫ Latitude 9520 Firmware Version < 1.24.0
Dell ≫ Latitude Rugged 5430 Firmware Version < 1.20.0
Dell ≫ Latitude Rugged 7330 Firmware Version < 1.20.0
Dell ≫ Optiplex 3000 Firmware Version < 1.15.0
Dell ≫ Optiplex 3000 Thin Client Firmware Version < 1.11.0
Dell ≫ Optiplex 5000 Firmware Version < 1.15.0
Dell ≫ Optiplex 5090 Firmware Version < 1.19.0
Dell ≫ Optiplex 5400 All-in-one Firmware Version < 1.1.30
Dell ≫ Optiplex 5490 All-in-one Firmware Version < 1.23.0
Dell ≫ Optiplex 7000 Firmware Version < 1.15.0
Dell ≫ Optiplex 7090 Firmware Version < 1.19.0
Dell ≫ Optiplex 7400 All-in-one Firmware Version < 1.1.30
Dell ≫ Optiplex 7490 All-in-one Firmware Version < 1.23.0
Dell ≫ Optiplex 7410 All-in-one Firmware Version < 1.6.0
Dell ≫ Optiplex Micro Plus 7010 Firmware Version < 1.6.0
Dell ≫ Optiplex Small Form Factor Plus 7010 Firmware Version < 1.6.0
Dell ≫ Optiplex Tower Plus 7010 Firmware Version < 1.6.0
Dell ≫ Optiplex Xe4 Firmware Version < 1.15.0
Dell ≫ Precision 3260 Xe Compact Firmware Version < 2.7.0
Dell ≫ Precision 3260 Compact Firmware Version < 2.7.0
Dell ≫ Precision 3450 Firmware Version < 1.19.0
Dell ≫ Precision 3460 Xe Small Form Factor Firmware Version < 2.7.0
Dell ≫ Precision 3460 Small Form Factor Firmware Version < 2.7.0
Dell ≫ Precision 3470 Firmware Version < 1.15.0
Dell ≫ Precision 3650 Tower Firmware Version < 1.24.0
Dell ≫ Precision 3660 Firmware Version < 2.7.0
Dell ≫ Precision 5470 Firmware Version < 1.15.0
Dell ≫ Precision 5570 Firmware Version < 1.16.0
Dell ≫ Precision 5860 Tower Firmware Version < 1.0.10
Dell ≫ Precision 7960 Tower Firmware Version < 1.0.9
Dell ≫ Vostro 3020 Sff Firmware Version < 1.6.0
Dell ≫ Vostro 3020 T Firmware Version < 1.6.0
Dell ≫ Vostro 3510 Firmware Version < 1.23.0
Dell ≫ Vostro 3690 Firmware Version < 1.19.0
Dell ≫ Vostro 3710 Firmware Version < 1.15.0
Dell ≫ Vostro 3890 Firmware Version < 1.19.0
Dell ≫ Vostro 3910 Firmware Version < 1.15.0
Dell ≫ Vostro 5410 Firmware Version < 2.20.0
Dell ≫ Vostro 5491 Firmware Version < 1.27.0
Dell ≫ Vostro 5510 Firmware Version < 2.20.0
Dell ≫ Vostro 5591 Firmware Version < 1.27.0
Dell ≫ Vostro 5890 Firmware Version < 1.19.0
Dell ≫ Vostro 7500 Firmware Version < 1.24.0
Dell ≫ Vostro 7510 Firmware Version < 1.17.0
Dell ≫ Xps 13 9305 Firmware Version < 1.16.0
Dell ≫ Xps 13 7390 Firmware Version < 1.21.0
Dell ≫ Xps 13 7390 2-in-1 Firmware Version < 1.26.0
Dell ≫ Xps 13 9300 Firmware Version < 1.19.0
Dell ≫ Xps 13 9310 Firmware Version < 3.17.0
Dell ≫ Xps 13 9310 2-in-1 Firmware Version < 2.19.0
Dell ≫ Xps 13 9315 Firmware Version < 1.13.0
Dell ≫ Xps 15 9520 Firmware Version < 1.16.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.068 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 3.9 | 0.3 | 3.6 |
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
|
security_alert@emc.com | 4.6 | 0.3 | 4.2 |
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:L
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.