6

CVE-2023-32471

Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated malicious user with high privileges could potentially exploit this vulnerability to read contents of stack memory and use this information for further exploits.

Data is provided by the National Vulnerability Database (NVD)
DellEdge Gateway 3200 Firmware Version-
   DellEdge Gateway 3200 Version-
DellEdge Gateway 5200 Firmware Version-
   DellEdge Gateway 5200 Version-
DellPrecision 3930 Rack Firmware Version-
   DellPrecision 3930 Rack Version-
DellOptiplex 7080 Firmware Version-
   DellOptiplex 7080 Version-
DellPrecision 5520 Firmware Version-
   DellPrecision 5520 Version-
DellInspiron 7460 Firmware Version-
   DellInspiron 7460 Version-
DellG5 5587 Firmware Version-
   DellG5 5587 Version-
DellG7 7588 Firmware Version-
   DellG7 7588 Version-
DellVostro 15 7580 Firmware Version-
   DellVostro 15 7580 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.24
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6 1.5 4
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
security_alert@emc.com 6 1.5 4
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.