BDU:2024-01986Low
BDU
BDU
Data Bank of Information Security Threats
BDU ФСТЭК is the authoritative Russian source of vulnerability information, covering both international CVEs relevant to domestic software and unique Russian-disclosed issues. Entries contain severity, affected product lists (in Russian), and mitigation recommendations.
Region
RU
Updates
1 ч
License
Открытые данные
Russian federal catalog of vulnerabilities and threats maintained by FSTEC. Required for compliance with Russian information security regulations (Приказ №17, Приказ №21).
https://bdu.fstec.ru →Share link
Anyone with the link can open this vulnerability.
Уязвимость микропрограммного обеспечения BIOS серверов Dell PowerEdge и рабочих станций Dell Precision Rack связана с записью данных за гра…
CVSS
3.8
Low
EPSS
0.00
p0
Published
2024-01-01
Updated
2024-01-01
Description
Уязвимость микропрограммного обеспечения BIOS серверов Dell PowerEdge и рабочих станций Dell Precision Rack связана с записью данных за границами буфера в памяти. Эксплуатация уязвимости может позволить нарушителю получить несанкционированный доступ к защищаемой информации
Affected products
Dell technologies Dss 8440Dell technologies Emc storage nx3240Dell technologies Emc storage nx3340Dell technologies Emc xc core 6420 systemDell technologies Emc xc core xc450Dell technologies Emc xc core xc640 systemDell technologies Emc xc core xc650Dell technologies Emc xc core xc6520Dell technologies Emc xc core xc740xd systemDell technologies Emc xc core xc740xd2Dell technologies Emc xc core xc750Dell technologies Emc xc core xc750xaDell technologies Emc xc core xc7525Dell technologies Emc xc core xc940 systemDell technologies Emc xc core xcxr2Dell technologies Poweredge c4130Dell technologies Poweredge c4140Dell technologies Poweredge c6320Dell technologies Poweredge c6420Dell technologies Poweredge c6520
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Timeline
2024-01-01
Published
2024-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: L
Local (L)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: L
Low (L)
User Interaction
UI: N
None (N)
Scope
S: C
Changed (C)
Confidentiality Impact
C: L
Low (L)
Integrity Impact
I: N
None (N)
Availability Impact
A: N
None (N)
Exploit indicators
EPSS
0.000 · p0
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
| Product | Vendor | Status |
|---|---|---|
| dss 8440 | dell technologies | Tracked |
| emc storage nx3240 | dell technologies | Tracked |
| emc storage nx3340 | dell technologies | Tracked |
| emc xc core 6420 system | dell technologies | Tracked |
| emc xc core xc450 | dell technologies | Tracked |
| emc xc core xc640 system | dell technologies | Tracked |
| emc xc core xc650 | dell technologies | Tracked |
| emc xc core xc6520 | dell technologies | Tracked |
| emc xc core xc740xd system | dell technologies | Tracked |
| emc xc core xc740xd2 | dell technologies | Tracked |
| emc xc core xc750 | dell technologies | Tracked |
| emc xc core xc750xa | dell technologies | Tracked |
| emc xc core xc7525 | dell technologies | Tracked |
| emc xc core xc940 system | dell technologies | Tracked |
| emc xc core xcxr2 | dell technologies | Tracked |
| poweredge c4130 | dell technologies | Tracked |
| poweredge c4140 | dell technologies | Tracked |
| poweredge c6320 | dell technologies | Tracked |
| poweredge c6420 | dell technologies | Tracked |
| poweredge c6520 | dell technologies | Tracked |
Showing first 20 of 123
Source databases
BDU
BDU
Data Bank of Information Security Threats
BDU ФСТЭК is the authoritative Russian source of vulnerability information, covering both international CVEs relevant to domestic software and unique Russian-disclosed issues. Entries contain severity, affected product lists (in Russian), and mitigation recommendations.
Region
RU
Updates
1 ч
License
Открытые данные
Russian federal catalog of vulnerabilities and threats maintained by FSTEC. Required for compliance with Russian information security regulations (Приказ №17, Приказ №21).
https://bdu.fstec.ru →Related vulnerabilities