6.7
CVE-2024-38296
- EPSS 0.03%
- Published 22.11.2024 03:15:04
- Last modified 04.02.2025 16:05:01
- Source security_alert@emc.com
- Teams watchlist Login
- Open Login
Dell Edge Gateway 3200, versions prior to 15.40.30.2879, and Edge Gateway 5200, versions prior to 12.0.94.2380, contain an Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.
Data is provided by the National Vulnerability Database (NVD)
Dell ≫ Intel Management Engine Firmware Update Utility Version < 15.40.30.2879
Dell ≫ Intel Management Engine Firmware Update Utility Version < 12.0.94.2380
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.065 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.4 | 0.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
|
security_alert@emc.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|