8.2
CVE-2025-36600
- EPSS 0.06%
- Veröffentlicht 08.07.2025 14:17:23
- Zuletzt bearbeitet 18.08.2025 18:55:09
- Quelle security_alert@emc.com
- CVE-Watchlists
- Unerledigt
Dell Client Platform BIOS contains an Improper Access Control Applied to Mirrored or Aliased Memory Regions vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Latitude 12 Rugged Extreme 7214 Firmware Version < 1.51.0
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.174 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| security_alert@emc.com | 8.2 | 1.5 | 6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
|
CWE-1257 Improper Access Control Applied to Mirrored or Aliased Memory Regions
Aliased or mirrored memory regions in hardware designs may have inconsistent read/write permissions enforced by the hardware. A possible result is that an untrusted agent is blocked from accessing a memory region but is not blocked from accessing the corresponding aliased memory region.